CVE-2023-28680
7.5HIGHJenkins Crap4J Plugin 0.9 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
Published: 4/2/2023Updated: 2/25/2025
Description
Jenkins Crap4J Plugin 0.9 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
AI AnalysisPowered by AI
Affected Products
jenkinscrap4j