CVE-2022-34787
30.06.2022, 18:15
Jenkins Project Inheritance Plugin 21.04.03 and earlier does not escape the reason a build is blocked in tooltips, resulting in a cross-site scripting (XSS) vulnerability exploitable by attackers able to control the reason a queue item is blocked.
Vendor | Product | Version |
---|---|---|
jenkins | project_inheritance | 𝑥 ≤ 21.04.03 |
𝑥
= Vulnerable software versions