Security Advisory

CVE-2022-41237

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-09-21 15:45:56
Last updated 2025-05-28 14:57:30
Assigner jenkins
CVSS score not scored
State PUBLISHED

Description

Jenkins DotCi Plugin 2.40.00 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.