Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-41239

Jenkins DotCi Plugin 2.40.00 and earlier does not escape the GitHub user name parameter provided to commit notifications when displaying them in a build cause, resulting in a stored cross-site scripting (XSS) vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.069
EPSS Ranking 91.0%
CVSS Severity
CVSS v3 Score 5.4
Products affected by CVE-2022-41239
  • Jenkins » Dotci » Version: 1.0.0
    cpe:2.3:a:jenkins:dotci:1.0.0
  • Jenkins » Dotci » Version: 1.0.1
    cpe:2.3:a:jenkins:dotci:1.0.1
  • Jenkins » Dotci » Version: 1.0.2
    cpe:2.3:a:jenkins:dotci:1.0.2
  • Jenkins » Dotci » Version: 1.0.3
    cpe:2.3:a:jenkins:dotci:1.0.3
  • Jenkins » Dotci » Version: 1.1.0
    cpe:2.3:a:jenkins:dotci:1.1.0
  • Jenkins » Dotci » Version: 1.1.1
    cpe:2.3:a:jenkins:dotci:1.1.1
  • Jenkins » Dotci » Version: 1.2.0
    cpe:2.3:a:jenkins:dotci:1.2.0
  • Jenkins » Dotci » Version: 1.2.1
    cpe:2.3:a:jenkins:dotci:1.2.1
  • Jenkins » Dotci » Version: 1.2.2
    cpe:2.3:a:jenkins:dotci:1.2.2
  • Jenkins » Dotci » Version: 1.3.0
    cpe:2.3:a:jenkins:dotci:1.3.0
  • Jenkins » Dotci » Version: 1.3.1
    cpe:2.3:a:jenkins:dotci:1.3.1
  • Jenkins » Dotci » Version: 1.3.2
    cpe:2.3:a:jenkins:dotci:1.3.2
  • Jenkins » Dotci » Version: 1.3.3
    cpe:2.3:a:jenkins:dotci:1.3.3
  • Jenkins » Dotci » Version: 1.3.4
    cpe:2.3:a:jenkins:dotci:1.3.4
  • Jenkins » Dotci » Version: 2.0.0
    cpe:2.3:a:jenkins:dotci:2.0.0
  • Jenkins » Dotci » Version: 2.1.0
    cpe:2.3:a:jenkins:dotci:2.1.0
  • Jenkins » Dotci » Version: 2.10.0
    cpe:2.3:a:jenkins:dotci:2.10.0
  • Jenkins » Dotci » Version: 2.11.0
    cpe:2.3:a:jenkins:dotci:2.11.0
  • Jenkins » Dotci » Version: 2.11.1
    cpe:2.3:a:jenkins:dotci:2.11.1
  • Jenkins » Dotci » Version: 2.11.2
    cpe:2.3:a:jenkins:dotci:2.11.2
  • Jenkins » Dotci » Version: 2.12.0
    cpe:2.3:a:jenkins:dotci:2.12.0
  • Jenkins » Dotci » Version: 2.12.1
    cpe:2.3:a:jenkins:dotci:2.12.1
  • Jenkins » Dotci » Version: 2.12.2
    cpe:2.3:a:jenkins:dotci:2.12.2
  • Jenkins » Dotci » Version: 2.12.3
    cpe:2.3:a:jenkins:dotci:2.12.3
  • Jenkins » Dotci » Version: 2.13.0
    cpe:2.3:a:jenkins:dotci:2.13.0
  • Jenkins » Dotci » Version: 2.13.1
    cpe:2.3:a:jenkins:dotci:2.13.1
  • Jenkins » Dotci » Version: 2.14.0
    cpe:2.3:a:jenkins:dotci:2.14.0
  • Jenkins » Dotci » Version: 2.14.1
    cpe:2.3:a:jenkins:dotci:2.14.1
  • Jenkins » Dotci » Version: 2.14.2
    cpe:2.3:a:jenkins:dotci:2.14.2
  • Jenkins » Dotci » Version: 2.14.3
    cpe:2.3:a:jenkins:dotci:2.14.3
  • Jenkins » Dotci » Version: 2.14.4
    cpe:2.3:a:jenkins:dotci:2.14.4
  • Jenkins » Dotci » Version: 2.14.5
    cpe:2.3:a:jenkins:dotci:2.14.5
  • Jenkins » Dotci » Version: 2.15.0
    cpe:2.3:a:jenkins:dotci:2.15.0
  • Jenkins » Dotci » Version: 2.15.1
    cpe:2.3:a:jenkins:dotci:2.15.1
  • Jenkins » Dotci » Version: 2.16.0
    cpe:2.3:a:jenkins:dotci:2.16.0
  • Jenkins » Dotci » Version: 2.16.1
    cpe:2.3:a:jenkins:dotci:2.16.1
  • Jenkins » Dotci » Version: 2.17.0
    cpe:2.3:a:jenkins:dotci:2.17.0
  • Jenkins » Dotci » Version: 2.18.0
    cpe:2.3:a:jenkins:dotci:2.18.0
  • Jenkins » Dotci » Version: 2.19.0
    cpe:2.3:a:jenkins:dotci:2.19.0
  • Jenkins » Dotci » Version: 2.19.1
    cpe:2.3:a:jenkins:dotci:2.19.1
  • Jenkins » Dotci » Version: 2.19.3
    cpe:2.3:a:jenkins:dotci:2.19.3
  • Jenkins » Dotci » Version: 2.19.5
    cpe:2.3:a:jenkins:dotci:2.19.5
  • Jenkins » Dotci » Version: 2.2
    cpe:2.3:a:jenkins:dotci:2.2
  • Jenkins » Dotci » Version: 2.20.0
    cpe:2.3:a:jenkins:dotci:2.20.0
  • Jenkins » Dotci » Version: 2.20.1
    cpe:2.3:a:jenkins:dotci:2.20.1
  • Jenkins » Dotci » Version: 2.21.0
    cpe:2.3:a:jenkins:dotci:2.21.0
  • Jenkins » Dotci » Version: 2.22.0
    cpe:2.3:a:jenkins:dotci:2.22.0
  • Jenkins » Dotci » Version: 2.22.1
    cpe:2.3:a:jenkins:dotci:2.22.1
  • Jenkins » Dotci » Version: 2.22.26.0
    cpe:2.3:a:jenkins:dotci:2.22.26.0
  • Jenkins » Dotci » Version: 2.23.0
    cpe:2.3:a:jenkins:dotci:2.23.0
  • Jenkins » Dotci » Version: 2.24.0
    cpe:2.3:a:jenkins:dotci:2.24.0
  • Jenkins » Dotci » Version: 2.24.1
    cpe:2.3:a:jenkins:dotci:2.24.1
  • Jenkins » Dotci » Version: 2.24.2
    cpe:2.3:a:jenkins:dotci:2.24.2
  • Jenkins » Dotci » Version: 2.24.3
    cpe:2.3:a:jenkins:dotci:2.24.3
  • Jenkins » Dotci » Version: 2.25.0
    cpe:2.3:a:jenkins:dotci:2.25.0
  • Jenkins » Dotci » Version: 2.25.1
    cpe:2.3:a:jenkins:dotci:2.25.1
  • Jenkins » Dotci » Version: 2.26.0
    cpe:2.3:a:jenkins:dotci:2.26.0
  • Jenkins » Dotci » Version: 2.27.0
    cpe:2.3:a:jenkins:dotci:2.27.0
  • Jenkins » Dotci » Version: 2.27.1
    cpe:2.3:a:jenkins:dotci:2.27.1
  • Jenkins » Dotci » Version: 2.27.3
    cpe:2.3:a:jenkins:dotci:2.27.3
  • Jenkins » Dotci » Version: 2.28.0
    cpe:2.3:a:jenkins:dotci:2.28.0
  • Jenkins » Dotci » Version: 2.28.1
    cpe:2.3:a:jenkins:dotci:2.28.1
  • Jenkins » Dotci » Version: 2.3
    cpe:2.3:a:jenkins:dotci:2.3
  • Jenkins » Dotci » Version: 2.30.0
    cpe:2.3:a:jenkins:dotci:2.30.0
  • Jenkins » Dotci » Version: 2.30.1
    cpe:2.3:a:jenkins:dotci:2.30.1
  • Jenkins » Dotci » Version: 2.30.2
    cpe:2.3:a:jenkins:dotci:2.30.2
  • Jenkins » Dotci » Version: 2.30.3
    cpe:2.3:a:jenkins:dotci:2.30.3
  • Jenkins » Dotci » Version: 2.30.4
    cpe:2.3:a:jenkins:dotci:2.30.4
  • Jenkins » Dotci » Version: 2.30.7
    cpe:2.3:a:jenkins:dotci:2.30.7
  • Jenkins » Dotci » Version: 2.31.0
    cpe:2.3:a:jenkins:dotci:2.31.0
  • Jenkins » Dotci » Version: 2.32.0
    cpe:2.3:a:jenkins:dotci:2.32.0
  • Jenkins » Dotci » Version: 2.32.1
    cpe:2.3:a:jenkins:dotci:2.32.1
  • Jenkins » Dotci » Version: 2.33.0
    cpe:2.3:a:jenkins:dotci:2.33.0
  • Jenkins » Dotci » Version: 2.34.0
    cpe:2.3:a:jenkins:dotci:2.34.0
  • Jenkins » Dotci » Version: 2.35.0
    cpe:2.3:a:jenkins:dotci:2.35.0
  • Jenkins » Dotci » Version: 2.36.0
    cpe:2.3:a:jenkins:dotci:2.36.0
  • Jenkins » Dotci » Version: 2.36.1
    cpe:2.3:a:jenkins:dotci:2.36.1
  • Jenkins » Dotci » Version: 2.36.2
    cpe:2.3:a:jenkins:dotci:2.36.2
  • Jenkins » Dotci » Version: 2.37.0
    cpe:2.3:a:jenkins:dotci:2.37.0
  • Jenkins » Dotci » Version: 2.38.0
    cpe:2.3:a:jenkins:dotci:2.38.0
  • Jenkins » Dotci » Version: 2.38.1
    cpe:2.3:a:jenkins:dotci:2.38.1
  • Jenkins » Dotci » Version: 2.38.10
    cpe:2.3:a:jenkins:dotci:2.38.10
  • Jenkins » Dotci » Version: 2.38.11
    cpe:2.3:a:jenkins:dotci:2.38.11
  • Jenkins » Dotci » Version: 2.38.2
    cpe:2.3:a:jenkins:dotci:2.38.2
  • Jenkins » Dotci » Version: 2.38.3
    cpe:2.3:a:jenkins:dotci:2.38.3
  • Jenkins » Dotci » Version: 2.38.4
    cpe:2.3:a:jenkins:dotci:2.38.4
  • Jenkins » Dotci » Version: 2.38.5
    cpe:2.3:a:jenkins:dotci:2.38.5
  • Jenkins » Dotci » Version: 2.38.6
    cpe:2.3:a:jenkins:dotci:2.38.6
  • Jenkins » Dotci » Version: 2.38.7
    cpe:2.3:a:jenkins:dotci:2.38.7
  • Jenkins » Dotci » Version: 2.38.8
    cpe:2.3:a:jenkins:dotci:2.38.8
  • Jenkins » Dotci » Version: 2.38.9
    cpe:2.3:a:jenkins:dotci:2.38.9
  • Jenkins » Dotci » Version: 2.39.0
    cpe:2.3:a:jenkins:dotci:2.39.0
  • Jenkins » Dotci » Version: 2.39.1
    cpe:2.3:a:jenkins:dotci:2.39.1
  • Jenkins » Dotci » Version: 2.39.10
    cpe:2.3:a:jenkins:dotci:2.39.10
  • Jenkins » Dotci » Version: 2.39.2
    cpe:2.3:a:jenkins:dotci:2.39.2
  • Jenkins » Dotci » Version: 2.39.3
    cpe:2.3:a:jenkins:dotci:2.39.3
  • Jenkins » Dotci » Version: 2.39.4
    cpe:2.3:a:jenkins:dotci:2.39.4
  • Jenkins » Dotci » Version: 2.39.5
    cpe:2.3:a:jenkins:dotci:2.39.5
  • Jenkins » Dotci » Version: 2.39.6
    cpe:2.3:a:jenkins:dotci:2.39.6
  • Jenkins » Dotci » Version: 2.39.7
    cpe:2.3:a:jenkins:dotci:2.39.7
  • Jenkins » Dotci » Version: 2.39.8
    cpe:2.3:a:jenkins:dotci:2.39.8
  • Jenkins » Dotci » Version: 2.39.9
    cpe:2.3:a:jenkins:dotci:2.39.9
  • Jenkins » Dotci » Version: 2.40.00
    cpe:2.3:a:jenkins:dotci:2.40.00
  • Jenkins » Dotci » Version: 2.5
    cpe:2.3:a:jenkins:dotci:2.5
  • Jenkins » Dotci » Version: 2.6.0
    cpe:2.3:a:jenkins:dotci:2.6.0
  • Jenkins » Dotci » Version: 2.6.1
    cpe:2.3:a:jenkins:dotci:2.6.1
  • Jenkins » Dotci » Version: 2.6.2
    cpe:2.3:a:jenkins:dotci:2.6.2
  • Jenkins » Dotci » Version: 2.6.3
    cpe:2.3:a:jenkins:dotci:2.6.3
  • Jenkins » Dotci » Version: 2.6.4
    cpe:2.3:a:jenkins:dotci:2.6.4
  • Jenkins » Dotci » Version: 2.6.5
    cpe:2.3:a:jenkins:dotci:2.6.5
  • Jenkins » Dotci » Version: 2.6.6
    cpe:2.3:a:jenkins:dotci:2.6.6
  • Jenkins » Dotci » Version: 2.6.7
    cpe:2.3:a:jenkins:dotci:2.6.7
  • Jenkins » Dotci » Version: 2.6.8
    cpe:2.3:a:jenkins:dotci:2.6.8
  • Jenkins » Dotci » Version: 2.6.9
    cpe:2.3:a:jenkins:dotci:2.6.9
  • Jenkins » Dotci » Version: 2.7.0
    cpe:2.3:a:jenkins:dotci:2.7.0
  • Jenkins » Dotci » Version: 2.7.1
    cpe:2.3:a:jenkins:dotci:2.7.1
  • Jenkins » Dotci » Version: 2.7.2
    cpe:2.3:a:jenkins:dotci:2.7.2
  • Jenkins » Dotci » Version: 2.7.3
    cpe:2.3:a:jenkins:dotci:2.7.3
  • Jenkins » Dotci » Version: 2.7.4
    cpe:2.3:a:jenkins:dotci:2.7.4
  • Jenkins » Dotci » Version: 2.7.5
    cpe:2.3:a:jenkins:dotci:2.7.5
  • Jenkins » Dotci » Version: 2.7.6
    cpe:2.3:a:jenkins:dotci:2.7.6
  • Jenkins » Dotci » Version: 2.7.7
    cpe:2.3:a:jenkins:dotci:2.7.7
  • Jenkins » Dotci » Version: 2.7.8
    cpe:2.3:a:jenkins:dotci:2.7.8
  • Jenkins » Dotci » Version: 2.8.0
    cpe:2.3:a:jenkins:dotci:2.8.0
  • Jenkins » Dotci » Version: 2.8.1
    cpe:2.3:a:jenkins:dotci:2.8.1
  • Jenkins » Dotci » Version: 2.8.2
    cpe:2.3:a:jenkins:dotci:2.8.2
  • Jenkins » Dotci » Version: 2.8.3
    cpe:2.3:a:jenkins:dotci:2.8.3
  • Jenkins » Dotci » Version: 2.8.4
    cpe:2.3:a:jenkins:dotci:2.8.4
  • Jenkins » Dotci » Version: 2.8.5
    cpe:2.3:a:jenkins:dotci:2.8.5
  • Jenkins » Dotci » Version: 2.8.6
    cpe:2.3:a:jenkins:dotci:2.8.6
  • Jenkins » Dotci » Version: 2.8.7
    cpe:2.3:a:jenkins:dotci:2.8.7
  • Jenkins » Dotci » Version: 2.8.8
    cpe:2.3:a:jenkins:dotci:2.8.8
  • Jenkins » Dotci » Version: 2.8.9
    cpe:2.3:a:jenkins:dotci:2.8.9
  • Jenkins » Dotci » Version: 2.9.0
    cpe:2.3:a:jenkins:dotci:2.9.0
  • Jenkins » Dotci » Version: 2.9.1
    cpe:2.3:a:jenkins:dotci:2.9.1
  • Jenkins » Dotci » Version: 2.9.2
    cpe:2.3:a:jenkins:dotci:2.9.2


Contact Us

Shodan ® - All rights reserved