CVE-2022-29049

HIGH8.0EPSS 0.11%

Promotion names in Jenkins promoted builds Plugin are not validated when using Job DSL

發布日:2022/4/13修改日:2024/2/16

描述

Jenkins promoted builds Plugin provides dedicated support for defining promotions using [Job DSL Plugin](https://plugins.jenkins.io/job-dsl). promoted builds Plugin 873.v6149db_d64130 and earlier does not validate the names of promotions defined in Job DSL. This allows attackers with Job/Configure permission to create a promotion with an unsafe name. As a result, the promotion name could be used for cross-site scripting (XSS) or to replace other `config.xml` files. promoted builds Plugin 876.v99d29788b_36b_ and 3.10.1 validates the name of promotions.

受影響套件(1)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1HIGH8.0CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

參考連結(4)