Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Jenkins HTML Publisher Plugin 1.32 and earlier does not escape job names, report names, and index page titles shown as part of the report frame, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permission.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Jenkins HTML Publisher Plugin 安全漏洞
Vulnerability Description
Jenkins和Jenkins Plugin都是Jenkins开源的产品。Jenkins是一个应用软件。一个开源自动化服务器Jenkins提供了数百个插件来支持构建,部署和自动化任何项目。Jenkins Plugin是一个应用软件。 Jenkins HTML Publisher Plugin 1.32 版本之前存在安全漏洞,该漏洞源于不会转义作为报告框架一部分显示的作业名称、报告名称和索引页标题,从而导致具有项目/配置权限的攻击者可以利用存储型跨站脚本 (XSS) 漏洞。
CVSS Information
N/A
Vulnerability Type
N/A