CVE-2020-2298 - Jenkins Nerrvana

Moderate 6.5

Jenkins Nerrvana Plugin 1.02.06 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

Affected software

Jenkins Nerrvana

Reference links

Get alerted to vulnerabilities in your software

CVE alerts, vulnerability alerts, latest versions and news matched to your software stack.