The custom Details view of the Static Analysis Utilities based OWASP Dependency-Check Plugin, was vulnerable to a persisted cross-site scripting vulnerability: Malicious users able to influence the input to this plugin could insert arbitrary HTML into this view.
{
"severity": "MODERATE",
"github_reviewed_at": "2024-01-30T22:33:48Z",
"cwe_ids": [
"CWE-79"
],
"nvd_published_at": "2017-10-05T01:29:00Z",
"github_reviewed": true
}