1
Candidate: CVE-2013-6374
4
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6374
5
https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2013-11-20
6
https://wiki.jenkins-ci.org/display/JENKINS/Build+Failure+Analyzer
7
http://secunia.com/advisories/55783
8
http://osvdb.org/100106
10
Cross-site scripting (XSS) vulnerability in the Build Failure Analyzer
11
plugin before 1.5.1 for Jenkins allows remote authenticated users to inject
12
arbitrary web script or HTML via unspecified vectors.
15
jdstrand> Build Failure Analyzer plugin not found in source
22
upstream_jenkins: needs-triage
24
precise_jenkins: not-affected (code-not-present)
25
quantal_jenkins: not-affected (code-not-present)
26
raring_jenkins: not-affected (code-not-present)
27
saucy_jenkins: not-affected (code-not-present)
28
devel_jenkins: not-affected (code-not-present)