Jenkins Simple Travis Pipeline Runner Plugin 1.0 and earlier specifies unsafe values in its custom Script Security whitelist, allowing attackers able to execute Script Security protected scripts to execute arbitrary code.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-5739 | Jenkins Simple Travis Pipeline Runner Plugin 1.0 and earlier specifies unsafe values in its custom Script Security whitelist, allowing attackers able to execute Script Security protected scripts to execute arbitrary code. |
Github GHSA |
GHSA-x7p9-vx6v-wv84 | Jenkins Simple Travis Pipeline Runner Plugin script sandbox bypass vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2024-08-04T22:17:20.571Z
Reserved: 2019-03-29T00:00:00
Link: CVE-2019-10380
No data.
Status : Modified
Published: 2019-08-07T15:15:13.283
Modified: 2024-11-21T04:19:00.627
Link: CVE-2019-10380
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA