7.5
CVSSv3

CVE-2021-41587

CVSSv4: NA | CVSSv3: 7.5 | CVSSv2: 5 | VMScore: 850 | EPSS: 0.00168 | KEV: Not Included
Published: 24/09/2021 Updated: 21/11/2024

Vulnerability Summary

SSRF Vulnerability in Gradle Enterprise Exposes Sensitive Credentials

In Gradle Enterprise versions earlier than 2021.1.3, there is a vulnerability. An attacker can perform Server-Side Request Forgery (SSRF) attacks. This can allow them to find credentials for other resources.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gradle gradle