Description
Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitrary web script or HTML in the CI game plugin.
Remediation
References
Related Vulnerabilities
WebLogic CVE-2020-14636 Vulnerability (CVE-2020-14636)
MediaWiki Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2023-45369)
WordPress Plugin SP Project & Document Manager Multiple Vulnerabilities (2.5.9.7)
WordPress Plugin WP Mail Logging Security Bypass (1.11.2)
PleskWin Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2013-0132)