CVE-2022-0538
Jenkins 2.333 and earlier, LTS 2.319.2 and earlier defines custom XStream converters that have not been updated to apply
Jenkins 2.333 and earlier, LTS 2.319.2 and earlier defines custom XStream converters that have not been updated to apply the protections for the vulnerability CVE-2021-43859 and allow unconstrained resource usage.
HIGH · CVSS 7.5
EPSS 0.00497
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0