Lucene search

K
osvGoogleOSV:GHSA-QJ27-W92H-FC9R
HistoryMay 24, 2022 - 5:06 p.m.

XML external entity (XXE) vulnerability in Jenkins

2022-05-2417:06:12
Google
osv.dev
6

6.7 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

68.1%

XML external entity (XXE) vulnerability in Jenkins before 1.600 and LTS before 1.596.1 allows remote attackers to read arbitrary XML files via an XPath query.

6.7 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

68.1%