← volver
CVE-2020-2223

CVE-2020-2223

EPSS 1.0%
Jenkins 2.244 and earlier, LTS 2.235.1 and earlier does not escape correctly the 'href' attribute of links to downstream jobs displayed in the build console page, resulting in a stored cross-site scripting vulnerability.
Productos afectados
Jenkins project · Jenkins

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →