CVE-2023-28683

8.2HIGH

Jenkins Phabricator Differential Plugin 2.1.5 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

Publicado: 4/2/2023Actualizado: 2/21/2025

Descripción

Jenkins Phabricator Differential Plugin 2.1.5 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

Análisis IAImpulsado por IA

Productos Afectados

jenkinsphabricator_differential

Referencias