CVE-2022-28140

HIGH8.1EPSS 0.16%

XXE vulnerability in Jenkins Flaky Test Handler Plugin

Published: 3/30/2022Modified: 11/8/2023

Description

Jenkins Flaky Test Handler Plugin 1.2.1 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH8.1CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

References (5)