- Inscrit
- 29 Octobre 2025
- Messages
- 5 856
- Réactions
- 1
- Points
- 38
Jenkins 2.251 and earlier, LTS 2.235.3 and earlier does not escape the remote address of the host starting a build via 'Trigger builds remotely', resulting in a stored cross-site scripting (XSS) vulnerability exploitable by users with Job/Configure permission or knowledge of the Authentication Token.
Source :
Posté automatiquement par le Bot FreelandForum.
Source :
You must be registered for see links
Posté automatiquement par le Bot FreelandForum.