Количество 2
Количество 2
CVE-2018-1000010
около 8 лет назад
Jenkins DRY Plugin 2.49 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery, or denial-of-service attacks.
CVSS3: 8.8
EPSS: Низкий
GHSA-x7qf-qh3r-mx22
больше 3 лет назад
XXE vulnerability in Jenkins DRY Plugin
CVSS3: 8.8
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-1000010 Jenkins DRY Plugin 2.49 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery, or denial-of-service attacks. | CVSS3: 8.8 | 0% Низкий | около 8 лет назад | |
GHSA-x7qf-qh3r-mx22 XXE vulnerability in Jenkins DRY Plugin | CVSS3: 8.8 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20