GHSA-qw28-g63m-jxqv
CRITICALCVE-2019-10306A sandbox bypass vulnerability in Jenkins ontrack Plugin 3.4 and earlier allowed attackers with control over ontrack DSL definitions to execute arbitrary code on the Jenkins master JVM.
- Affected
- < 3.4.1
- Fixed in
- 3.4.1
- Weakness
- CWE-863
- Published
- 2022-05-24
- Source
- github