Description
Cross-site scripting (XSS) vulnerability in the Monitoring plugin before 1.53.0 for Jenkins allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Remediation
References
http://secunia.com/advisories/59122
https://wiki.jenkins-ci.org/display/JENKINS/Monitoring
https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2014-10-01
Related Vulnerabilities
CVE-2021-21666 Vulnerability in maven package org.jenkins-ci.plugins:kiuwanjenkinsplugin
CVE-2021-27524 Vulnerability in npm package braft-editor
CVE-2020-2231 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2016-10531 Vulnerability in maven package org.webjars:marked
CVE-2015-7536 Vulnerability in maven package org.jenkins-ci.main:jenkins-core