Jenkins Plugin Security Advisory: XXE, CSRF, Unverified Downloads (CVE-2020-2320-2324)
Security AdvisoryHighJenkins
Affected:
- CVS plugin <= 2.16
- Plugin Installation Manager tool <= 2.1.3
- Shelve Project plugin <= 3.0
- Chaos Monkey plugin <= 0.4
Fixed in:
- CVS plugin 2.17
- Plugin Installation Manager tool 2.2.0
- Shelve Project plugin 3.1
- Chaos Monkey plugin 0.4.1
Referenced CVEs: CVE-2020-2324
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from www.jenkins.io, cleaned by our LLM pipeline, and translated to English. View original.