Jenkins

Performance

2 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.37%
  • Veröffentlicht 02.09.2026 15:40:54
  • Zuletzt bearbeitet 03.09.2026 17:13:16

Jenkins Performance Plugin 1015.v09ca_52b_3370e and earlier does not restrict the classes that can be instantiated when deserializing cached performance reports stored in the build directory on the Jenkins controller, allowing attackers with Item/Con...

  • EPSS 1.67%
  • Veröffentlicht 12.11.2021 11:15:08
  • Zuletzt bearbeitet 21.11.2024 05:48:51

Jenkins Performance Plugin 3.20 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.