Количество 2
Количество 2
CVE-2019-1003015
An XML external entity processing vulnerability exists in Jenkins Job Import Plugin 2.1 and earlier in src/main/java/org/jenkins/ci/plugins/jobimport/client/RestApiClient.java that allows attackers with the ability to control the HTTP server (Jenkins) queried in preparation of job import to read arbitrary files, perform a denial of service attack, etc.
GHSA-882r-r8fw-p538
XXE vulnerability in Jenkins Job Import Plugin
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-1003015 An XML external entity processing vulnerability exists in Jenkins Job Import Plugin 2.1 and earlier in src/main/java/org/jenkins/ci/plugins/jobimport/client/RestApiClient.java that allows attackers with the ability to control the HTTP server (Jenkins) queried in preparation of job import to read arbitrary files, perform a denial of service attack, etc. | CVSS3: 9.1 | 0% Низкий | около 7 лет назад | |
GHSA-882r-r8fw-p538 XXE vulnerability in Jenkins Job Import Plugin | CVSS3: 9.1 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу