CVEs Blog | G5 Cyber Security

CVE-2020-2180 – Jenkins AWS SAM Plugin 1.2.2 and earlier does not configure its YAML pars

Jenkins AWS SAM Plugin 1.2.2 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-2180

Reference (s):

Exit mobile version