Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1764 | Jenkins Maven Repository Server Plugin 1.10 and earlier does not escape the versions of build artifacts on the Build Artifacts As Maven Repository page, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control maven project versions in `pom.xml`. |
Github GHSA |
GHSA-9pvw-8q92-hm9w | Stored XSS vulnerability in Jenkins Maven Repository Server Plugin |
Thu, 02 Jan 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2025-01-02T19:34:53.259Z
Reserved: 2023-06-14T08:58:33.245Z
Link: CVE-2023-35143
Updated: 2024-08-02T16:23:58.988Z
Status : Modified
Published: 2023-06-14T13:15:11.957
Modified: 2025-01-02T20:16:03.793
Link: CVE-2023-35143
OpenCVE Enrichment
No data.
EUVD
Github GHSA