CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.2. It affects Jenkins.
CVE
CVE-2023-28681
Severity
HIGH
CVSS
8.2
EPSS
0.57%
Jenkins
Original NVD Description
Jenkins Visual Studio Code Metrics Plugin 1.7 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
Related CVEs
Other vulnerabilities affecting the same vendor(s)