CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.5. It affects Jenkins.
CVE
CVE-2020-2305
Severity
MEDIUM
CVSS
6.5
EPSS
1.47%
Jenkins
Original NVD Description
Jenkins Mercurial Plugin 2.11 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
Related CVEs
Other vulnerabilities affecting the same vendor(s)