vulnerability

Alpine Linux: CVE-2020-2161: Cross-site Scripting

Severity
3
CVSS
(AV:N/AC:M/Au:S/C:N/I:P/A:N)
Published
2020-03-25
Added
2020-05-08
Modified
2024-10-02

Description

Jenkins 2.227 and earlier, LTS 2.204.5 and earlier does not properly escape node labels that are shown in the form validation for label expressions on job configuration pages, resulting in a stored XSS vulnerability exploitable by users able to define node labels.

Solution

alpine-linux-upgrade-jenkins
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.