Security Advisory

CVE-2025-47885

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-05-14 20:35:55
Last updated 2025-05-20 14:24:40
Assigner jenkins
State PUBLISHED

Description

Jenkins Health Advisor by CloudBees Plugin 374.v194b_d4f0c8c8 and earlier does not escape responses from the Jenkins Health Advisor server, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control Jenkins Health Advisor server responses.