cve/2020/CVE-2020-2244.md
2024-05-25 21:48:12 +02:00

796 B

CVE-2020-2244

Description

Jenkins Build Failure Analyzer Plugin 1.27.0 and earlier does not escape matching text in a form validation response, resulting in a cross-site scripting (XSS) vulnerability exploitable by attackers able to provide console output for builds used to test build log indications.

POC

Reference

No PoCs from references.

Github