Vulnerabilities > Jenkins > Shortcut JOB
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-08-16 | CVE-2023-40346 | Cross-site Scripting vulnerability in Jenkins Shortcut JOB Jenkins Shortcut Job Plugin 0.4 and earlier does not escape the shortcut redirection URL, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to configure shortcut jobs. | 5.4 |