Reflected XSS Vulnerability in Micro Focus Application Automation Tools for Jenkins
CVE-2021-22510
6.1MEDIUM
What is CVE-2021-22510?
A reflected XSS vulnerability exists in the Micro Focus Application Automation Tools Plugin for Jenkins, affecting all versions up to and including version 6.7. This vulnerability allows attackers to inject malicious scripts through unsafe user input, potentially compromising sensitive user data and session cookies. It is essential for users of this plugin to apply security patches and validate inputs to mitigate the risk associated with this flaw.
Affected Version(s)
Micro Focus Application Automation Tools Plugin - Jenkins plugin 6.7 and earlier versions