CVE-2021-21699
Jenkins Active Choices Plugin 2.5.6 and earlier does not escape the parameter name of reactive parameters and dynamic reference parameters, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Job/Configure…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 88.5%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
Jenkins Active Choices Plugin 2.5.6 and earlier does not escape the parameter name of reactive parameters and dynamic reference parameters, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Job/Configure permission.
- CVSS 3.1
- 5.4 MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
- EPSS
- 88.48% probability · 100th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-79
- Affected
- jenkins/active choices
- Source
- jenkinsci-cert@googlegroups.com
References
- http://www.openwall.com/lists/oss-security/2021/11/12/1Mailing List, Third Party Advisory
- https://www.jenkins.io/security/advisory/2021-11-12/#SECURITY-2219Vendor Advisory
- http://www.openwall.com/lists/oss-security/2021/11/12/1Mailing List, Third Party Advisory
- https://www.jenkins.io/security/advisory/2021-11-12/#SECURITY-2219Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.