VYPR

Maven package

org.jenkins-ci.plugins/cppcheck

pkg:maven/org.jenkins-ci.plugins/cppcheck

Vulnerabilities (1)

  • CVE-2023-28678MedApr 2, 2023
    affected <= 1.26

    Jenkins Cppcheck Plugin 1.26 and earlier does not escape file names from Cppcheck report files before showing them on the Jenkins UI, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control report file contents.