Количество 2
Количество 2
CVE-2017-2650
больше 7 лет назад
It was found that the use of Pipeline: Classpath Step Jenkins plugin enables a bypass of the Script Security sandbox for users with SCM commit access, as well as users with e.g. Job/Configure permission in Jenkins.
CVSS3: 8.5
EPSS: Низкий
GHSA-r5c7-qcc9-5v7m
больше 3 лет назад
Jenkins Pipeline Classpath Step plugin allowed Script Security sandbox bypass
CVSS3: 8.5
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2017-2650 It was found that the use of Pipeline: Classpath Step Jenkins plugin enables a bypass of the Script Security sandbox for users with SCM commit access, as well as users with e.g. Job/Configure permission in Jenkins. | CVSS3: 8.5 | 0% Низкий | больше 7 лет назад | |
GHSA-r5c7-qcc9-5v7m Jenkins Pipeline Classpath Step plugin allowed Script Security sandbox bypass | CVSS3: 8.5 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20