QID 983821
QID 983821: Java (maven) Security Update for org.jenkins-ci.plugins:credentials (GHSA-gchq-9r68-6jwv)
Jenkins Credentials Plugin 2.3.18 and earlier does not escape user-controlled information on a view it provides, resulting in a reflected cross-site scripting (XSS) vulnerability.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-gchq-9r68-6jwv for updates pertaining to this vulnerability.
Vendor References
- GHSA-gchq-9r68-6jwv -
github.com/advisories/GHSA-gchq-9r68-6jwv
CVEs related to QID 983821
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-gchq-9r68-6jwv | org.jenkins-ci.plugins:credentials |
|