CVE Database
/

CVE-2019-1003042

Back to search

CVE-2019-1003042

Published: Mar 28, 2019

Modified: Aug 5, 2024

PUBLISHED

Description

A cross site scripting vulnerability in Jenkins Lockable Resources Plugin 2.4 and earlier allows attackers able to control resource names to inject arbitrary JavaScript in web pages rendered by the plugin.

VendorProductVersions

Jenkins project

Jenkins Lockable Resources Plugin

affected
2.4 and earlier

References

107628
vdb-entry
x_refsource_BID
RHSA-2019:1423
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now