CVE-2019-16549
Jenkins Maven Release Plugin 0.16.1 and earlier does not configure the XML parser to prevent XML external entity (XXE) a
Jenkins Maven Release Plugin 0.16.1 and earlier does not configure the XML parser to prevent XML external entity (XXE) attacks, allowing man-in-the-middle attackers to have Jenkins parse crafted XML documents.
HIGH · CVSS 8.1
EPSS 0.00085
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0