ZeroHour

CVE-2017-1000088

CVSS 3.0
5.4 medium
EPSS
<1%p51
Published
()
Modified
Description

The Sidebar Link plugin allows users able to configure jobs, views, and agents to add entries to the sidebar of these objects. There was no input validation, which meant users were able to use javascript: schemes for these links.

Vendors
jenkins
Products
sidebar link
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.