CVE-2020-2225 is a vulnerability in Jenkins Matrix Project
Published on July 15, 2020
Jenkins Matrix Project Plugin 1.16 and earlier does not escape the axis names shown in tooltips on the overview page of builds with multiple axes, resulting in a stored cross-site scripting vulnerability.
Products Associated with CVE-2020-2225
Want to know whenever a new CVE is published for Jenkins Matrix Project? stack.watch will email you.
Affected Versions
Jenkins project Jenkins Matrix Project Plugin:- Version unspecified, <= 1.16 is affected.
Exploit Probability
EPSS
0.30%
Percentile
53.35%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.