Reflected cross-site scripting (XSS) In org.jenkins-ci.plugins:lucene-search
Description
Jenkins Lucene-Search Plugin vulnerable to reflected (XSS) cross-site scripting Jenkins Lucene-Search Plugin 370.v62a5f618cd3a and earlier does not escape the search query parameter displayed on the search result page.
This results in a reflected cross-site scripting (XSS) vulnerability.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
maven | 387.v938a |
Aliases
1. 2. 3. 4.
References
1. 2. 3.