Jenkins Update
2595Warning Date
Severity Level
Warning Number
Target Sector
19 April, 2020
● Medium
2020-1155
All
Description:
Jenkins has released security update to address multiple vulnerabilities in the following products:
- AWS SAM Plugin
- up to and including 1.2.2
- Copr Plugin
- up to and including 0.3
- Parasoft Findings Plugin
- up to and including 10.4.3
- Yaml Axis Plugin
- up to and including 0.2.0
Threats:
Attacker could exploit these vulnerabilities by executing arbitrary code.
Best practice and Recommendations:
The CERT team encourages users to review Jenkins security advisory and apply the necessary updates: