Jenkins Dashboard View Plugin 2.18... CVE-2022-27197

3.5 AV AC AU C I A
发布: 2022-03-15
修订: 2024-11-21

Jenkins Dashboard View Plugin 2.18 and earlier does not perform URL validation for the Iframe Portlet's Iframe source URL, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to configure views.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息