CVE-2019-10328

CVSS v3.0 9.9 (Critical)
99% Progress
CVSS v2.0 6.5 (Medium)
65% Progress
EPSS 0.26 % (66th)
0.26% Progress
Affected Products 1
Advisories 2

Jenkins Pipeline Remote Loader Plugin 1.4 and earlier provided a custom whitelist for script security that allowed attackers to invoke arbitrary methods, bypassing typical sandbox protection.

Weaknesses
CWE-693
Protection Mechanism Failure
CVE Status
PUBLISHED
CNA
Jenkins Project
Published Date
2019-05-31 15:29:00
(5 years ago)
Updated Date
2023-10-25 18:16:16
(10 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Jenkins Pipeline Remote Loader for Jenkins 1.4 and prior versions cpe:2.3:a:jenkins:pipeline_remote_loader::*:*:*:*:jenkins <= 1.4
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...