Vulnerability Details CVE-2020-2227
Jenkins Deployer Framework Plugin 1.2 and earlier does not escape the URL displayed in the build home page, resulting in a stored cross-site scripting vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 32.0%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2020-2227
-
cpe:2.3:a:jenkins:deployer_framework:1.0
-
cpe:2.3:a:jenkins:deployer_framework:1.1
-
cpe:2.3:a:jenkins:deployer_framework:1.2