CVE-2019-10373
07.08.2019, 15:15
A stored cross-site scripting vulnerability in Jenkins Build Pipeline Plugin 1.5.8 and earlier allows attackers able to edit the build pipeline description to inject arbitrary HTML and JavaScript in the plugin-provided web pages in Jenkins.
Vendor | Product | Version |
---|---|---|
jenkins | build_pipeline | 𝑥 ≤ 1.5.8 |
𝑥
= Vulnerable software versions