Description
Cross-site scripting (XSS) vulnerability in the default markup formatter in Jenkins 1.523 allows remote attackers to inject arbitrary web script or HTML via the Description field in the user configuration.
Remediation
References
Related Vulnerabilities
Apache Tomcat Other Vulnerability (CVE-2002-1394)
WordPress Plugin Content Copy Protection & Prevent Image Save Cross-Site Request Forgery (1.3)
WordPress Plugin Save Contact Form 7 Information Disclosure (2.0)
PHP Numeric Errors Vulnerability (CVE-2007-1383)
WordPress Plugin Funky Penguin WP-PHPList 'unsubscribeemail' Parameter Cross-Site Scripting (2.10.2)