← Back to CVE List

CVE-2018-1000108

Published: 2018-03-13T13:29Z
Last Modified: 2024-11-21T03:39Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A cross-site scripting vulnerability exists in Jenkins CppNCSS Plugin 1.1 and earlier in AbstractProjectAction/index.jelly that allow an attacker to craft links to Jenkins URLs that run arbitrary JavaScript in the user's browser when accessed. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt