Логотип exploitDog
bind:CVE-2024-34145
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-34145

Количество 3

Количество 3

redhat логотип

CVE-2024-34145

больше 1 года назад

A sandbox bypass vulnerability involving sandbox-defined classes that shadow specific non-sandbox-defined classes in Jenkins Script Security Plugin 1335.vf07d9ce377a_e and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2024-34145

больше 1 года назад

A sandbox bypass vulnerability involving sandbox-defined classes that shadow specific non-sandbox-defined classes in Jenkins Script Security Plugin 1335.vf07d9ce377a_e and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2g4q-9vm9-9fw4

больше 1 года назад

Jenkins Script Security Plugin sandbox bypass vulnerability

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2024-34145

A sandbox bypass vulnerability involving sandbox-defined classes that shadow specific non-sandbox-defined classes in Jenkins Script Security Plugin 1335.vf07d9ce377a_e and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.

CVSS3: 8.8
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-34145

A sandbox bypass vulnerability involving sandbox-defined classes that shadow specific non-sandbox-defined classes in Jenkins Script Security Plugin 1335.vf07d9ce377a_e and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.

CVSS3: 8.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-2g4q-9vm9-9fw4

Jenkins Script Security Plugin sandbox bypass vulnerability

CVSS3: 8.8
0%
Низкий
больше 1 года назад

Уязвимостей на страницу