Jenkins Naginator Plugin 1.18.1 and... CVE-2022-45382

- AV AC AU C I A
发布: 2022-11-15
修订: 2024-11-21

Jenkins Naginator Plugin 1.18.1 and earlier does not escape display names of source builds in builds that were triggered via Retry action, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to edit build display names.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息