CVE-2022-34183: Jenkins Agent Server Parameter

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

Jenkins Agent Server Parameter Plugin 1.1 and earlier does not escape the name and description of Agent Server parameters on views displaying parameters, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permission.

Affected products

  • Jenkins Agent Server Parameter: up to and including 1.1

Published 2022-06-23. Last modified 2026-06-17.