Security Advisory

CVE-2020-2221

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-07-15 17:00:26
Last updated 2024-08-04 07:01:41
Assigner jenkins
State PUBLISHED

Description

Jenkins 2.244 and earlier, LTS 2.235.1 and earlier does not escape the upstream jobs display name shown as part of a build cause, resulting in a stored cross-site scripting vulnerability.