Medium severity5.4NVD Advisory· Published Mar 25, 2020· Updated Jun 17, 2026
CVE-2020-2163
CVE-2020-2163
Description
Jenkins 2.227 and earlier, LTS 2.204.5 and earlier improperly processes HTML content of list view column headers, resulting in a stored XSS vulnerability exploitable by users able to control column headers.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:jenkins:jenkins:*:*:*:*:-:*:*:*+ 3 more
- cpe:2.3:a:jenkins:jenkins:*:*:*:*:-:*:*:*range: <=2.227
- cpe:2.3:a:jenkins:jenkins:*:*:*:*:lts:*:*:*range: <=2.204.5
- (no CPE)range: <=2.227, <=2.204.5
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
2- www.openwall.com/lists/oss-security/2020/03/25/2nvdMailing ListThird Party Advisory
- jenkins.io/security/advisory/2020-03-25/nvdVendor Advisory
News mentions
1- Jenkins Security Advisory 2020-03-25Jenkins Security Advisories · Mar 25, 2020