Vulnerabilities > Jenkins > Visual Studio Code Metrics > High

DATE CVE VULNERABILITY TITLE RISK
2023-04-02 CVE-2023-28681 XXE vulnerability in Jenkins Visual Studio Code Metrics
Jenkins Visual Studio Code Metrics Plugin 1.7 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
network
low complexity
jenkins CWE-611
8.2