CVE-2025-67641: XSS
Jenkins Coverage Plugin 2.3054.ve1ff7baa123b and earlier does not validate the configured coverage results ID when creating coverage results, only when submitting the job configuration through the UI, allowing attackers with Item/Configure permission to use a javascript: scheme URL as identifier by configuring the job through the REST API, resulting in a stored cross-site scripting (XSS) vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-67641?
CVE-2025-67641 has a high severity due to the potential for attackers to exploit the vulnerability with Item/Configure permission.
How do I fix CVE-2025-67641?
To fix CVE-2025-67641, update the Jenkins Coverage Plugin to a version later than 2.3054.ve1ff7b_a_a_123b_.
What does CVE-2025-67641 affect?
CVE-2025-67641 affects versions of the Jenkins Coverage Plugin up to and including 2.3054.ve1ff7b_a_a_123b_.
Who is vulnerable to CVE-2025-67641?
Users of the Jenkins Coverage Plugin with Item/Configure permission are vulnerable to CVE-2025-67641.
What kind of attack is possible with CVE-2025-67641?
CVE-2025-67641 allows attackers to use a `javascript:` scheme URL to manipulate coverage results.