Vulnerabilities (CVE)

Filtered by vendor Jenkins Subscribe
Filtered by product Play Framework
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-2200 1 Jenkins 1 Play Framework 2024-02-28 6.5 MEDIUM 8.8 HIGH
Jenkins Play Framework Plugin 1.0.2 and earlier lets users specify the path to the `play` command on the Jenkins master for a form validation endpoint, resulting in an OS command injection vulnerability exploitable by users able to store such a file on the Jenkins master.