Back to search
CVE-2022-34778
Published: Jun 30, 2022
Modified: Nov 20, 2024
PUBLISHED
Description
Jenkins TestNG Results Plugin 554.va4a552116332 and earlier renders the unescaped test descriptions and exception messages provided in test results if certain job-level options are set, resulting in a cross-site scripting (XSS) vulnerability exploitable by attackers able to configure jobs or control test results.
| Vendor | Product | Versions |
|---|---|---|
Jenkins project | Jenkins TestNG Results Plugin | affected unspecified - <= 554.va4a552116332 |
References
https://www.jenkins.io/security/advisory/2022-06-30/#SECURITY-2788
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now