Vulnerabilities > CVE-2022-43432 - Unspecified vulnerability in Jenkins Xframium Builder
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
Jenkins XFramium Builder Plugin 1.0.22 and earlier programmatically disables Content-Security-Policy protection for user-generated content in workspaces, archived artifacts, etc. that Jenkins offers for download.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |