Red Hat Bugzilla – Bug 1032400
CVE-2013-6374 Jenkins: XSS vulnerability in Build failure analyzer plugin (SECURITY-96)
Last modified: 2016-03-04 06:23:54 EST
Kohsuke Kawaguchi reports:
XSS vulnerability in Build failure analyzer plugin.
This was originally reported by Sharif Nassar
This is now public:
Upstream patch commit:
Not affected. This issue did not affect Jenkins as shipped with various Red Hat products, as they do not include the Jenkins Build Failure Analyzer plugin.