GHSA-28x9-hc4p-9vh2
HIGHCVE-2020-2262Jenkins Android Lint Plugin 2.6 and earlier does not escape the annotation message in tooltips, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to provide report files to the plugin's post-build step.
- Affected
- <= 2.6
- Fixed in
- not stated
- Weakness
- CWE-79
- Published
- 2022-05-24
- Source
- github