9.8
CVSSv3

CVE-2019-1003040

Published: 28/03/2019 Updated: 25/10/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.55 and previous versions allows malicious users to invoke arbitrary constructors in sandboxed scripts.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jenkins script security

redhat openshift container platform 3.11

Vendor Advisories

Synopsis Important: Red Hat OpenShift Container Platform 311 jenkins-2-plugins security update Type/Severity Security Advisory: Important Topic An update for jenkins-2-plugins is now available for Red Hat OpenShift Container Platform 311Red Hat Product Security has rated this update as having a security ...
Impact: Important Public Date: 2019-03-25 CWE: CWE-704 Bugzilla: 1694532: CVE-2019-1003040 jenkins-plug ...

Mailing Lists

CVE-2019-1003040 (Script Security) and CVE-2019-1003041 (Pipeline: Groovy) CVE-2019-1003042 CVE-2019-1003043 CVE-2019-1003044 CVE-2019-1003045 CVE-2019-1003047 CVE-2019-1003046 CVE-2019-1003048 ...