VYPR

Delivery Pipeline

by Jenkins Project

CVEs (1)

  • CVE-2017-1000404MedJan 26, 2018
    risk 0.40cvss 6.1epss 0.01

    The Jenkins Delivery Pipeline Plugin version 1.0.7 and earlier used the unescaped content of the query parameter 'fullscreen' in its JavaScript, resulting in a cross-site scripting vulnerability through specially crafted URLs.