CVE-2023-24430

9.8CRITICAL

Jenkins Semantic Versioning Plugin 1.14 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

Published: 1/26/2023Updated: 4/2/2025

Description

Jenkins Semantic Versioning Plugin 1.14 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

AI AnalysisPowered by AI

Affected Products

jenkinssemantic_versioning

References