CVE

CVE-2018-1000016

CVE-2018-1000016

Jenkins Ant Plugin 1.7 and earlier failed to escape tool names it shows on job configuration screens, resulting in a cross-site scripting vulnerability that is exploitable only by Jenkins administrators.

Source: CVE-2018-1000016

Exit mobile version