Description
jenkins before versions 2.44, 2.32.2 is vulnerable to a persisted cross-site scripting in search suggestions due to improperly escaping users with less-than and greater-than characters in their names (SECURITY-388).
Remediation
References
Related Vulnerabilities
SharePoint Untrusted Pointer Dereference Vulnerability (CVE-2026-40367)
Jenkins Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-0788)
phpBB CVE-2010-1630 Vulnerability (CVE-2010-1630)
Oracle Application Server CVE-2008-1814 Vulnerability (CVE-2008-1814)
WordPress Plugin WooCommerce Customers Manager Privilege Escalation (26.4)