CVE-2019-10458
16.10.2019, 14:15
Jenkins Puppet Enterprise Pipeline 1.3.1 and earlier specifies unsafe values in its custom Script Security whitelist, allowing attackers able to execute Script Security protected scripts to execute arbitrary code.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | puppet_enterprise_pipeline | 𝑥 ≤ 1.3.1 |
𝑥
= Vulnerable software versions