ZeroHour

CVE-2020-2135

CVSS 3.1
8.8 high
EPSS
1%p61
Published
()
Modified
Description

Sandbox protection in Jenkins Script Security Plugin 1.70 and earlier could be circumvented through crafted method calls on objects that implement GroovyInterceptable.

Vendors
jenkins
Products
script security
Weakness
CWE-863
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.