CVE-2023-24441

9.8CRITICAL

Jenkins MSTest Plugin 1.0.0 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

Published: 1/26/2023Updated: 4/2/2025

Description

Jenkins MSTest Plugin 1.0.0 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

AI AnalysisPowered by AI

Affected Products

jenkinsmstest

References