Jenkins Script Security Plugin 漏洞列表
共找到 1 个与 Jenkins Script Security Plugin 相关的漏洞
📅 加载漏洞趋势中...
-
CVE-2019-1003000: Jenkins Script Security Plugin <=1.49 - Sandbox Bypass POC
A sandbox bypass vulnerability exists in the Jenkins Script Security Plugin (versions 1.49 and earlier) within src/main/java/org/jenkinsci/plugins/scriptsecurity/sandbox/groovy/GroovySandbox.java. This flaw allows attackers with permission to submit sandboxed scripts to execute arbitrary code on the Jenkins master JVM, potentially compromising the entire Jenkins environment.