Количество 2
Количество 2
CVE-2019-10327
An XML external entities (XXE) vulnerability in Jenkins Pipeline Maven Integration Plugin 1.7.0 and earlier allowed attackers able to control a temporary directory's content on the agent running the Maven build to have Jenkins parse a maliciously crafted XML file that uses external entities for extraction of secrets from the Jenkins master, server-side request forgery, or denial-of-service attacks.
GHSA-6755-jgp4-8q7h
XML External Entity processing vulnerability in Pipeline Maven Integration Jenkins Plugin
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-10327 An XML external entities (XXE) vulnerability in Jenkins Pipeline Maven Integration Plugin 1.7.0 and earlier allowed attackers able to control a temporary directory's content on the agent running the Maven build to have Jenkins parse a maliciously crafted XML file that uses external entities for extraction of secrets from the Jenkins master, server-side request forgery, or denial-of-service attacks. | CVSS3: 8.1 | 0% Низкий | больше 6 лет назад | |
GHSA-6755-jgp4-8q7h XML External Entity processing vulnerability in Pipeline Maven Integration Jenkins Plugin | CVSS3: 8.1 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу