VYPR
Medium severity5.4NVD Advisory· Published May 16, 2023· Updated Jun 17, 2026

CVE-2023-32984

CVE-2023-32984

Description

Jenkins TestNG Results Plugin 730.v4c5283037693 and earlier does not escape several values that are parsed from TestNG report files and displayed on the plugin's test information pages, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to provide a crafted TestNG report file.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
org.jenkins-ci.plugins:testng-pluginMaven
< 730.732.v959a730.732.v959a

Affected products

2

Patches

Vulnerability mechanics

References

4

News mentions

1