Files
CVEs-PoC/2022/CVE-2022-20615.md
T
2025-09-29 21:09:30 +02:00

858 B

CVE-2022-20615

Description

Jenkins Matrix Project Plugin 1.19 and earlier does not escape HTML metacharacters in node and label names, and label descriptions, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Agent/Configure permission.

POC

Reference

Github