CVE Database
/

CVE-2021-21648

Back to search

CVE-2021-21648

Published: May 11, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

Jenkins Credentials Plugin 2.3.18 and earlier does not escape user-controlled information on a view it provides, resulting in a reflected cross-site scripting (XSS) vulnerability.

VendorProductVersions

Jenkins project

Jenkins Credentials Plugin

affected
unspecified - <= 2.3.18
unaffected
2.3.0.1
unaffected
2.3.7.1
unaffected
2.3.14.1
unaffected
2.3.13.1

+1 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now