vulnerability

FreeBSD: VID-1DDAB5CB-14C9-4632-959F-802C412A9593 (CVE-2020-2221): jenkins -- multiple vulnerabilities

Severity
4
CVSS
(AV:N/AC:M/Au:S/C:N/I:P/A:N)
Published
Jul 15, 2020
Added
Jul 16, 2020
Modified
Oct 20, 2020

Description

Jenkins 2.244 and earlier, LTS 2.235.1 and earlier does not escape the upstream job's display name shown as part of a build cause, resulting in a stored cross-site scripting vulnerability.

Solution(s)

freebsd-upgrade-package-jenkinsfreebsd-upgrade-package-jenkins-lts
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.