Lucene search

K
cvelistJenkinsCVELIST:CVE-2021-21677
HistoryAug 31, 2021 - 1:50 p.m.

CVE-2021-21677

2021-08-3113:50:13
jenkins
www.cve.org

0.004 Low

EPSS

Percentile

73.0%

Jenkins Code Coverage API Plugin 1.4.0 and earlier does not apply Jenkins JEP-200 deserialization protection to Java objects it deserializes from disk, resulting in a remote code execution vulnerability.

CNA Affected

[
  {
    "product": "Jenkins Code Coverage API Plugin",
    "vendor": "Jenkins project",
    "versions": [
      {
        "lessThanOrEqual": "1.4.0",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

0.004 Low

EPSS

Percentile

73.0%

Related for CVELIST:CVE-2021-21677