Vulnerabilities > Jenkins > ZAP Pipeline > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-07-02 CVE-2020-2214 Cross-site Scripting vulnerability in Jenkins ZAP Pipeline
Jenkins ZAP Pipeline Plugin 1.9 and earlier programmatically disables Content-Security-Policy protection for user-generated content in workspaces, archived artifacts, etc.
network
low complexity
jenkins CWE-79
5.4