Total vulnerabilities in the database
Jenkins 2.88 and earlier; 2.73.2 and earlier Autocompletion suggestions for text fields were not escaped, resulting in a persisted cross-site scripting vulnerability if the source for the suggestions allowed specifying text that includes HTML metacharacters like less-than and greater-than characters.
Software | From | Fixed in |
---|---|---|
jenkins / jenkins | - | 2.73.2.x |
jenkins / jenkins | - | 2.88.x |
![]() |
- | 2.73.3 |
![]() |
2.74 | 2.89 |