Cross-site scripting (XSS) vulnerability in Jetty JSP servlet engine allows remote attackers to insert arbitrary HTML or script via an HTTP request to a .jsp file whose name contains the malicious script and some encoded linefeed characters (%0a).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.029
EPSS Ranking 85.7%