CVE-2014-2065

EPSS 0.14%

Jenkins cross-site scripting (XSS) vulnerability

發布日:2022/5/17修改日:2024/12/3

描述

Cross-site scripting (XSS) vulnerability in Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to inject arbitrary web script or HTML via the iconSize cookie.

受影響套件(1)

參考連結(5)