CVE-2019-10335

CVE-2019-10335

A stored cross site scripting vulnerability in Jenkins ElectricFlow Plugin 1.1.5 and earlier allowed attackers able to configure jobs in Jenkins or control the output of the ElectricFlow API to inject arbitrary HTML and JavaScript in the plugin-provided output on build status pages.

Source: CVE-2019-10335

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다