Description
Cross-site scripting (XSS) vulnerability in the Monitoring plugin before 1.53.0 for Jenkins allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Remediation
References
http://secunia.com/advisories/59122
https://wiki.jenkins-ci.org/display/JENKINS/Monitoring
https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2014-10-01
Related Vulnerabilities
CVE-2022-29049 Vulnerability in maven package org.jenkins-ci.plugins:promoted-builds
CVE-2016-10531 Vulnerability in maven package org.webjars.npm:marked
CVE-2018-14042 Vulnerability in maven package org.webjars.bowergithub.twbs:bootstrap
CVE-2018-20676 Vulnerability in maven package org.webjars.bower:bootstrap
CVE-2020-2137 Vulnerability in maven package org.jenkins-ci.plugins:timestamper