Jenkins Active Choices 是 Jenkins开源的一个应用插件。用于参数化的自由式Jenkins作业中,以创建脚本化,动态和交互式作业参数。 Jenkins Active Choices Plugin 2.5.2 and earlier 存在跨站脚本漏洞,该漏洞源于没有转译引用参数值。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Jenkins project | Jenkins Active Choices Plugin | unspecified ~ 2.5.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-21617 | Jenkins Configuration Slicing 跨站请求伪造漏洞 | |
| CVE-2021-21618 | Jenkins Repository Connector 跨站脚本漏洞 | |
| CVE-2021-21619 | Jenkins Claim Plugin 跨站脚本漏洞 | |
| CVE-2021-21620 | Jenkins Claim 跨站请求伪造漏洞 | |
| CVE-2021-21621 | Jenkins Support Core 信息泄露漏洞 | |
| CVE-2021-21622 | Jenkins Artifact Repository Parameter 跨站脚本漏洞 |
No comments yet