-
Type:
Bug
-
Resolution: Duplicate
-
Priority:
Major
-
Component/s: pipeline-utility-steps-plugin
-
None
-
Environment:pipeline-utility-steps:2.13.0
pipeline-utility-steps plugin depends on commons-text-1.8, which is affected by the following CVE:
https://nvd.nist.gov/vuln/detail/CVE-2022-42889
Â
- is duplicated by
-
JENKINS-69877 CVE-2022-42889: Apache Commons Text prior to 1.10.0 allows RCE when applied to untrusted input due to insecure interpolation defaults
-
- Closed
-