Логотип exploitDog
bind:CVE-2024-52554
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-52554

Количество 2

Количество 2

nvd логотип

CVE-2024-52554

около 1 года назад

Jenkins Shared Library Version Override Plugin 17.v786074c9fce7 and earlier declares folder-scoped library overrides as trusted, so that they're not executed in the Script Security sandbox, allowing attackers with Item/Configure permission on a folder to configure a folder-scoped library override that runs without sandbox protection.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-7845-crfj-phc4

около 1 года назад

Script security bypass vulnerability in Jenkins Shared Library Version Override Plugin

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-52554

Jenkins Shared Library Version Override Plugin 17.v786074c9fce7 and earlier declares folder-scoped library overrides as trusted, so that they're not executed in the Script Security sandbox, allowing attackers with Item/Configure permission on a folder to configure a folder-scoped library override that runs without sandbox protection.

CVSS3: 8.8
0%
Низкий
около 1 года назад
github логотип
GHSA-7845-crfj-phc4

Script security bypass vulnerability in Jenkins Shared Library Version Override Plugin

CVSS3: 8.8
0%
Низкий
около 1 года назад

Уязвимостей на страницу