VYPR

Shared Library Version Override Plugin

by Jenkins Project

CVEs (1)

  • CVE-2024-52554Nov 13, 2024
    risk 0.00cvss epss 0.01

    Jenkins Shared Library Version Override Plugin 17.v786074c9fce7 and earlier declares folder-scoped library overrides as trusted, so that they're not executed in the Script Security sandbox, allowing attackers with Item/Configure permission on a folder to configure a…