Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Jenkins Subscribe
Filtered by product Contrast Continuous Application Security
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-43420 1 Jenkins 1 Contrast Continuous Application Security 2022-10-20 N/A 5.4 MEDIUM
Jenkins Contrast Continuous Application Security Plugin 3.9 and earlier does not escape data returned from the Contrast service when generating a report, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to control or modify Contrast service API responses.