5.4
CVSSv3

CVE-2022-29041

Published: 12/04/2022 Updated: 17/11/2023
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Jenkins Jira Plugin 3.7 and previous versions, except 3.6.1, does not escape the name and description of Jira Issue and Jira Release Version parameters on views displaying parameters, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permission.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins jira

jenkins jira 3.7

Vendor Advisories

Synopsis Important: OpenShift Container Platform 4933 packages and security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic Red Hat OpenShift Container Platform release 4933 is now available withupdates to pack ...
Jenkins Jira Plugin 37 and earlier, except 361, does not escape the name and description of Jira Issue and Jira Release Version parameters on views displaying parameters, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permission ...