Required CVE Record Information
Description
Cross-site scripting (XSS) vulnerability in the Build Failure Analyzer plugin before 1.5.1 for Jenkins allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
References 4 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2013-11-20 x_transferred
- https://wiki.jenkins-ci.org/display/JENKINS/Build+Failure+Analyzer x_transferred
- secunia.com: 55783 third-party-advisoryx_transferred
- osvdb.org: 100106 vdb-entryx_transferred