VYPR

Maven package

org.jenkins-ci.plugins/squashtm-publisher-plugin

pkg:maven/org.jenkins-ci.plugins/squashtm-publisher-plugin

Vulnerabilities (1)

  • CVE-2021-43578Nov 12, 2021
    affected <= 1.0.0

    Jenkins Squash TM Publisher (Squash4Jenkins) Plugin 1.0.0 and earlier implements an agent-to-controller message that does not implement any validation of its input, allowing attackers able to control agent processes to replace arbitrary files on the Jenkins controller file system