Vulnerabilities > Jenkins > Active Choices > Low

DATE CVE VULNERABILITY TITLE RISK
2018-01-26 CVE-2017-1000386 Cross-site Scripting vulnerability in Jenkins Active Choices
Jenkins Active Choices plugin version 1.5.3 and earlier allowed users with Job/Configure permission to provide arbitrary HTML to be shown on the 'Build With Parameters' page through the 'Active Choices Reactive Reference Parameter' type.
network
jenkins CWE-79
3.5