Jenkins AWSEB Deployment Plugin 0.3.19 and earlier does not escape various values printed as part of form validation output, resulting in a reflected cross-site scripting vulnerability.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| br.com.ingenieux.jenkins.plugins:awseb-deployment-plugin(Maven) | 0 | 0.3.20 | N/A |
CVSS Metrics