ZeroHour

CVE-2023-35144

CVSS 3.1
5.4 medium
EPSS
<1%p48
Published
()
Modified
Description

Jenkins Maven Repository Server Plugin 1.10 and earlier does not escape project and build display names on the Build Artifacts As Maven Repository page, resulting in a stored cross-site scripting (XSS) vulnerability.

Vendors
jenkins
Products
maven repository server
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.