cbcvebase.
CVE-2022-34176
published 2022-06-23

CVE-2022-34176: Jenkins JUnit Plugin 1119.va_a_5e9068da_d7 and earlier does not escape descriptions of test results, resulting in a stored cross-site scripting (XSS)…

PriorityP342medium5.4CVSS 3.1
AVNACLPRLUIRSCCLILAN
EPSS
76.88%
99.5th percentile
Jenkins JUnit Plugin 1119.va_a_5e9068da_d7 and earlier does not escape descriptions of test results, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Run/Update permission.

Affected

33 ranges· showing 25
VendorProductVersion rangeFixed in
jenkinsagent_server_parameter_plugin
jenkinsbeaker_builder_plugin
jenkinsconvertigo_mobile_platform_plugin
jenkinscrx_content_package_deployer_plugin
jenkinsdate_parameter_plugin
jenkinsdynamic_extended_choice_parameter_plugin
jenkinseasyqa_plugin
jenkinsembeddable_build_status_plugin
jenkinsfilesystem_list_parameter_plugin
jenkinshidden_parameter_plugin
jenkinsimage_tag_parameter_plugin
jenkinsimproper_authorization_in_embeddable_build_status_plugin
jenkinsinput_step_plugin
jenkinsjenkins_ci_server_plugin
jenkinsjenkins_core
jenkinsjenkins_lts
jenkinsjenkins_weekly
jenkinsjianliao_notification_plugin
jenkinsjunit<= 1119.va_a_5e9068da_d7
jenkinsjunit_plugin
jenkinsmaven_metadata_plugin
jenkinsnested_view_plugin
jenkinsns-nd_integration_performance_publisher_plugin
jenkinsorchestrator_plugin
jenkinspackage_version_plugin

Detection & IOCsextracted from sources · hover to see the quote

  • Stored XSS vulnerability exists in Jenkins JUnit Plugin versions up to and including 1119.va_a_5e9068da_d7 — descriptions of test results are not escaped, allowing injection of arbitrary HTML/script code
  • Exploitation requires Run/Update permission — monitor for unexpected HTML or script content injected into Jenkins test result descriptions by users holding this permission level
  • ·Red Hat has marked the affected package (jenkins-2-plugins) in Red Hat OpenShift Container Platform 3.11 as 'Will not fix' — deployments on this platform remain permanently vulnerable unless mitigated externally

CVSS provenance

nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
nvdv2.03.5LOWAV:N/AC:M/Au:S/C:N/I:P/A:N
vendor_msrc5.4MEDIUM
vendor_redhat5.4MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.