Lucene search

K
osvGoogleOSV:CVE-2022-0538
HistoryFeb 09, 2022 - 2:15 p.m.

CVE-2022-0538

2022-02-0914:15:07
Google
osv.dev
19
jenkins
vulnerability
resource usage

AI Score

6.5

Confidence

Low

EPSS

0.015

Percentile

87.1%

Jenkins 2.333 and earlier, LTS 2.319.2 and earlier defines custom XStream converters that have not been updated to apply the protections for the vulnerability CVE-2021-43859 and allow unconstrained resource usage.