GHSA-88qj-3q6h-8m5q
MODERATECVE-2019-10395Build Environment Plugin did not escape values of environment variables shown on its views. This resulted in a cross-site scripting vulnerability exploitable by attackers able to control the values of build environment variables, typically users with Job/Configure or Job/Build permission.
- Affected
- < 1.7
- Fixed in
- 1.7
- Weakness
- CWE-79
- Published
- 2022-05-24
- Source
- github