QID 997491
Date Published: 2024-02-26
QID 997491: Java (Maven) Security Update for org.jenkins-ci.plugins:sidebar-link (GHSA-477r-v22q-r42f)
The Sidebar Link plugin allows users able to configure jobs, views, and agents to add entries to the sidebar of these objects. There was no input validation, which meant users were able to use javascript: schemes for these links.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-477r-v22q-r42f for updates and patch information.
Vendor References
- GHSA-477r-v22q-r42f -
github.com/advisories/GHSA-477r-v22q-r42f
CVEs related to QID 997491
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-477r-v22q-r42f | org.jenkins-ci.plugins:sidebar-link |
|