Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Jenkins Log Parser Plugin 2.0 and earlier does not escape an error message, resulting in a cross-site scripting vulnerability exploitable by users able to define log parsing rules.