5.4
CVSSv3

CVE-2022-29036

Published: 12/04/2022 Updated: 17/11/2023
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Jenkins Credentials Plugin 1111.v35a_307992395 and previous versions, except 1087.1089.v2f1b_9a_b_040e4, 1074.1076.v39c30cecb_0e2, and 2.6.1.1, does not escape the name and description of Credentials parameters on views displaying parameters, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permission.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins credentials

Vendor Advisories

Synopsis Important: OpenShift Container Platform 4752 paackages and security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic Red Hat OpenShift Container Platform release 4752 is now available withupdates to pac ...
Synopsis Important: OpenShift Container Platform 311705 security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic Red Hat OpenShift Container Platform release 311705 is now available withupdates to packages and ...
Synopsis Important: OpenShift Container Platform 4659 security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic Red Hat OpenShift Container Platform release 4659 is now available withupdates to packages and imag ...
Synopsis Important: OpenShift Container Platform 4933 packages and security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic Red Hat OpenShift Container Platform release 4933 is now available withupdates to pack ...
Synopsis Moderate: OpenShift Container Platform 311705 security update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 311705 is now available withupdates to packages and images that fix several bugs and add enhancementsThis release includes a security update for Red Hat OpenShift Container Pl ...
Jenkins Credentials Plugin 1111v35a_307992395 and earlier, except 10871089v2f1b_9a_b_040e4, 10741076v39c30cecb_0e2, and 2611, does not escape the name and description of Credentials parameters on views displaying parameters, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permissio ...