Lucene search

K
osvGoogleOSV:CVE-2017-1000107
HistoryOct 05, 2017 - 1:29 a.m.

CVE-2017-1000107

2017-10-0501:29:04
Google
osv.dev
5

7.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

42.9%

Script Security Plugin did not apply sandboxing restrictions to constructor invocations via positional arguments list, super constructor invocations, method references, and type coercion expressions. This could be used to invoke arbitrary constructors and methods, bypassing sandbox protection.

7.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

42.9%

Related for OSV:CVE-2017-1000107