CVE-2018-1000407

CVE-2018-1000407

A cross-site scripting vulnerability exists in Jenkins 2.145 and earlier, LTS 2.138.1 and earlier in core/src/main/java/hudson/model/Api.java that allows attackers to specify URLs to Jenkins that result in rendering arbitrary attacker-controlled HTML by Jenkins.

Source: CVE-2018-1000407

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다