Description
Cross-site scripting (XSS) vulnerability in the Monitoring plugin before 1.53.0 for Jenkins allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Remediation
References
https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2014-10-01
https://wiki.jenkins-ci.org/display/JENKINS/Monitoring
http://secunia.com/advisories/59122
Related Vulnerabilities
CVE-2018-20676 Vulnerability in maven package org.webjars.npm:bootstrap-sass
CVE-2023-29202 Vulnerability in maven package org.xwiki.platform:xwiki-platform-rendering-macro-rss
CVE-2022-45064 Vulnerability in maven package org.apache.sling:org.apache.sling.engine
CVE-2022-46769 Vulnerability in maven package org.apache.sling:org.apache.sling.cms.ui
CVE-2020-7690 Vulnerability in maven package org.webjars.bower:jspdf