Description
Jenkins Pipeline Remote Loader Plugin 1.4 and earlier provided a custom whitelist for script security that allowed attackers to invoke arbitrary methods, bypassing typical sandbox protection.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-5283 | Jenkins Pipeline Remote Loader Plugin 1.4 and earlier provided a custom whitelist for script security that allowed attackers to invoke arbitrary methods, bypassing typical sandbox protection. |
Github GHSA |
GHSA-v558-fhw2-v46w | Unsafe entry in Script Security list of approved signatures in Pipeline Remote Loader Plugin |
References
History
No history.
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2024-08-04T22:17:20.492Z
Reserved: 2019-03-29T00:00:00.000Z
Link: CVE-2019-10328
No data.
Status : Modified
Published: 2019-05-31T15:29:00.513
Modified: 2024-11-21T04:18:54.057
Link: CVE-2019-10328
OpenCVE Enrichment
No data.
EUVD
Github GHSA