Description
Jenkins 2.227 and earlier, LTS 2.204.5 and earlier improperly processes HTML content of list view column headers, resulting in a stored XSS vulnerability exploitable by users able to control column headers.
Remediation
References
Related Vulnerabilities
PHP Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2017-11144)
Oracle Database Server CVE-2009-2000 Vulnerability (CVE-2009-2000)
Nginx Integer Overflow or Wraparound Vulnerability (CVE-2017-20005)
Joomla Credentials Management Errors Vulnerability (CVE-2016-9081)
Oracle Database Server CVE-2008-2611 Vulnerability (CVE-2008-2611)