-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The commit diff shows the vulnerability stemmed from: 1) Direct insertion of buildName into HTML without escaping in anchor tags, 2) Unescaped insertion of changeSet[i].author and changeSet[i].message into HTML. The patched version adds an escapeUntrustedHtml() wrapper around these values. The reload_jenkins_build_history function handles all these rendering operations, making it the root cause.
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| com.paul8620.jenkins.plugins:pipeline-aggregator-view | maven | < 1.9 | 1.9 |
Ongoing coverage of React2Shell