CVE-2020-2224 is a vulnerability in Jenkins Matrix Project
Published on July 15, 2020
Jenkins Matrix Project Plugin 1.16 and earlier does not escape the node names shown in tooltips on the overview page of builds with a single axis, resulting in a stored cross-site scripting vulnerability.
Products Associated with CVE-2020-2224
Want to know whenever a new CVE is published for Jenkins Matrix Project? stack.watch will email you.
Affected Versions
Jenkins project Jenkins Matrix Project Plugin:- Version unspecified, <= 1.16 is affected.
Exploit Probability
EPSS
0.29%
Percentile
52.01%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.