CVE Database
/

CVE-2022-34778

Back to search

CVE-2022-34778

Published: Jun 30, 2022

Modified: Nov 20, 2024

PUBLISHED

Description

Jenkins TestNG Results Plugin 554.va4a552116332 and earlier renders the unescaped test descriptions and exception messages provided in test results if certain job-level options are set, resulting in a cross-site scripting (XSS) vulnerability exploitable by attackers able to configure jobs or control test results.

VendorProductVersions

Jenkins project

Jenkins TestNG Results Plugin

affected
unspecified - <= 554.va4a552116332

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now