Cross-site scripting (XSS) vulnerability in Jenkins before 1.640 and LTS before 1.625.2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors related to workspaces and archived artifacts.
References
Link | Resource |
---|---|
https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2015-12-09 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2016-02-03T15:00:00
Updated: 2016-06-09T16:57:01
Reserved: 2015-09-29T00:00:00
Link: CVE-2015-7536
JSON object: View
NVD Information
Status : Analyzed
Published: 2016-02-03T18:59:01.070
Modified: 2016-06-14T00:14:28.127
Link: CVE-2015-7536
JSON object: View
Redhat Information
No data.
CWE