Количество 5
Количество 5
CVE-2018-1000861
A code execution vulnerability exists in the Stapler web framework used by Jenkins 2.153 and earlier, LTS 2.138.3 and earlier in stapler/core/src/main/java/org/kohsuke/stapler/MetaClass.java that allows attackers to invoke some methods on Java objects by accessing crafted URLs that were not intended to be invoked this way.
CVE-2018-1000861
A code execution vulnerability exists in the Stapler web framework used by Jenkins 2.153 and earlier, LTS 2.138.3 and earlier in stapler/core/src/main/java/org/kohsuke/stapler/MetaClass.java that allows attackers to invoke some methods on Java objects by accessing crafted URLs that were not intended to be invoked this way.
CVE-2018-1000861
A code execution vulnerability exists in the Stapler web framework use ...
GHSA-hhpm-5cp2-hg4x
Deserialization of Untrusted Data in Jenkins
BDU:2022-04793
Уязвимость функции в stapler/core/src/main/java/org/kohsuke/stapler/MetaClass.java компонента Stapler сервера автоматизации Jenkins, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-1000861 A code execution vulnerability exists in the Stapler web framework used by Jenkins 2.153 and earlier, LTS 2.138.3 and earlier in stapler/core/src/main/java/org/kohsuke/stapler/MetaClass.java that allows attackers to invoke some methods on Java objects by accessing crafted URLs that were not intended to be invoked this way. | CVSS3: 8.8 | 94% Критический | около 7 лет назад | |
CVE-2018-1000861 A code execution vulnerability exists in the Stapler web framework used by Jenkins 2.153 and earlier, LTS 2.138.3 and earlier in stapler/core/src/main/java/org/kohsuke/stapler/MetaClass.java that allows attackers to invoke some methods on Java objects by accessing crafted URLs that were not intended to be invoked this way. | CVSS3: 9.8 | 94% Критический | около 7 лет назад | |
CVE-2018-1000861 A code execution vulnerability exists in the Stapler web framework use ... | CVSS3: 9.8 | 94% Критический | около 7 лет назад | |
GHSA-hhpm-5cp2-hg4x Deserialization of Untrusted Data in Jenkins | CVSS3: 9.8 | 94% Критический | больше 3 лет назад | |
BDU:2022-04793 Уязвимость функции в stapler/core/src/main/java/org/kohsuke/stapler/MetaClass.java компонента Stapler сервера автоматизации Jenkins, позволяющая нарушителю выполнить произвольный код | CVSS3: 9.8 | 94% Критический | около 7 лет назад |
Уязвимостей на страницу