A sandbox bypass vulnerability in Jenkins ontrack Plugin 3.4 and earlier allowed attackers with control over ontrack DSL definitions to execute arbitrary code on the Jenkins master JVM.
2019-04-18T17:29:00.837
2024-11-21T04:18:51.407
Modified
CVSSv3.1: 9.9 (CRITICAL)
AV:N/AC:L/Au:S/C:P/I:P/A:P
8.0
6.4