← back
CVE-2023-40346

CVE-2023-40346

EPSS 0.4%
Jenkins Shortcut Job Plugin 0.4 and earlier does not escape the shortcut redirection URL, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to configure shortcut jobs.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →