Vulnerabilities > Jenkins > Amazon WEB Services Serverless Application Model > High

DATE CVE VULNERABILITY TITLE RISK
2020-04-16 CVE-2020-2180 Deserialization of Untrusted Data vulnerability in Jenkins Amazon web Services Serverless Application Model 1.2.2
Jenkins AWS SAM Plugin 1.2.2 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.
network
low complexity
jenkins CWE-502
8.8