vulnerability
FreeBSD: VID-1DDAB5CB-14C9-4632-959F-802C412A9593 (CVE-2020-2220): jenkins -- multiple vulnerabilities
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
4 | (AV:N/AC:M/Au:S/C:N/I:P/A:N) | Jul 15, 2020 | Jul 16, 2020 | Oct 20, 2020 |
Severity
4
CVSS
(AV:N/AC:M/Au:S/C:N/I:P/A:N)
Published
Jul 15, 2020
Added
Jul 16, 2020
Modified
Oct 20, 2020
Description
Jenkins 2.244 and earlier, LTS 2.235.1 and earlier does not escape the agent name in the build time trend page, resulting in a stored cross-site scripting vulnerability.
Solution(s)
freebsd-upgrade-package-jenkinsfreebsd-upgrade-package-jenkins-lts
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.