CVE-2022-28160
Published Mar 29, 2022Jenkins Tests Selector Plugin 1.3.3 and earlier allows users with Item/Configure permission to read arbitrary files on the Jenkins controller.
Vendor/product archive
2 CVEs tagged to jenkins / tests_selector — 0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.
Jenkins Tests Selector Plugin 1.3.3 and earlier allows users with Item/Configure permission to read arbitrary files on the Jenkins controller.
Jenkins Tests Selector Plugin 1.3.3 and earlier does not escape the Properties File Path option for Choosing Tests parameters, resulting in a stored cross-site scripting (XSS) vul…