ZeroHour

CVE-2019-10355

CVSS 3.1
8.8 high
EPSS
3%p84
Published
()
Modified
Description

A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.61 and earlier related to the handling of type casts allowed attackers to execute arbitrary code in sandboxed scripts.

Vendors
jenkinsredhat
Products
script security, openshift container platform
Weakness
CWE-704
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.