CVE-2017-1000103: Jenkins Dry

Medium severity, CVSS 5.4. EPSS: 0.7% chance of exploitation in the next 30 days.

The custom Details view of the Static Analysis Utilities based DRY Plugin, was vulnerable to a persisted cross-site scripting vulnerability: Malicious users able to influence the input to this plugin could insert arbitrary HTML into this view.

Affected products

  • Jenkins Dry: up to and including 2.48

Published 2017-10-05. Last modified 2026-06-17.