← back
CVE-2021-21667

CVE-2021-21667

EPSS 75.7%
Jenkins Scriptler Plugin 3.2 and earlier does not escape parameter names shown in job configuration forms, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Scriptler/Configure permission.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →