Vulnerability Details CVE-2019-10418
Jenkins Kubernetes :: Pipeline :: Arquillian Steps Plugin provides a custom whitelist for script security that allowed attackers to invoke arbitrary methods, bypassing typical sandbox protection.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.8%
CVSS Severity
CVSS v3 Score 9.9
CVSS v2 Score 6.5
Products affected by CVE-2019-10418
-
cpe:2.3:a:jenkins:kubernetes_pipeline:1.3
-
cpe:2.3:a:jenkins:kubernetes_pipeline:1.5
-
cpe:2.3:a:jenkins:kubernetes_pipeline:1.6