CVE-2019-10410: Jenkins Log Parser

Medium severity, CVSS 5.4. EPSS: 0.9% chance of exploitation in the next 30 days.

Jenkins Log Parser Plugin 2.0 and earlier did not escape an error message, resulting in a cross-site scripting vulnerability exploitable by users able to define log parsing rules.

Affected products

  • Jenkins Log Parser: up to and including 2.0

Published 2019-09-25. Last modified 2026-06-17.