Jenkins Active Choices Plugin 2.5.6... CVE-2021-21699

3.5 AV AC AU C I A
发布: 2021-11-12
修订: 2024-11-21

Jenkins Active Choices Plugin 2.5.6 and earlier does not escape the parameter name of reactive parameters and dynamic reference parameters, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Job/Configure permission.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息