Description
jenkins before versions 2.44, 2.32.2 is vulnerable to a persisted cross-site scripting in search suggestions due to improperly escaping users with less-than and greater-than characters in their names (SECURITY-388).
Remediation
References
Related Vulnerabilities
Nginx Out-of-bounds Write Vulnerability (CVE-2011-4315)
PHP NULL Pointer Dereference Vulnerability (CVE-2016-7131)
phpMyAdmin Resource Management Errors Vulnerability (CVE-2016-6622)
Apache Traffic Server CVE-2014-3525 Vulnerability (CVE-2014-3525)
Dolibarr Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2021-25957)