CVE-2020-2170

Publication date

2020-03-25 16:05:38

Family

jenkins

State

PUBLISHED

Description

Jenkins RapidDeploy Plugin 4.2 and earlier does not escape package names in the table of packages obtained from a remote server, resulting in a stored XSS vulnerability.