• Icon: Task Task
    • Resolution: Unresolved
    • Icon: Critical Critical
    • ldap-plugin
    • None
    • Jenkins: 2.289.3
      LDAP Plugin: 2.7

      Hello,

      Could you confirm that the LDAP Plugin https://github.com/jenkinsci/ldap-plugin is not impacted by this thread: https://tanzu.vmware.com/security/cve-2022-22965 
      If so, when do you plan to deliver a fix ?

      Regards

          [JENKINS-68174] LDAP Plugin: CVE-2022-22965

          The Jenkins blog post Spring Framework RCE, CVE-2022-22965 says no impact was found in the Jenkins core or plugins. Discussion topic.

          Kalle Niemitalo added a comment - The Jenkins blog post Spring Framework RCE, CVE-2022-22965 says no impact was found in the Jenkins core or plugins. Discussion topic .

            Unassigned Unassigned
            gbegin Gautier BEGIN
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated: