CVEs Blog | G5 Cyber Security

CVE-2020-2245 – Jenkins Valgrind Plugin 0.28 and earlier does not configure its XML parse

Jenkins Valgrind Plugin 0.28 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-2245

Reference (s):

Exit mobile version