CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.1. It affects Jenkins.
CVE
CVE-2020-2284
Severity
HIGH
CVSS
7.1
EPSS
0.88%
Jenkins
Original NVD Description
Jenkins Liquibase Runner Plugin 1.4.5 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
Related CVEs
Other vulnerabilities affecting the same vendor(s)