Jenkins AWS SAM Plugin 1.2.2 and previous versions does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jenkins amazon web services serverless application model |