漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
Jenkins Claim Plugin 2.18.1 and earlier does not escape the user display name, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers who are able to control the display names of Jenkins users, either via the security realm, or directly inside Jenkins.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Jenkins Claim Plugin 跨站脚本漏洞
Vulnerability Description
Jenkins Claim 是 Jenkins开源的一个应用插件。提供用户从Jenkins声明失败的构建和测试,以表明他们有责任修复它们。 Jenkins Claim Plugin 2.18.1 and earlier 存在跨站脚本漏洞,该漏洞源于没有转义用户的显示名。
CVSS Information
N/A
Vulnerability Type
N/A