Vulnerabilities > Jenkins > Yaml Axis > 0.2.0

DATE CVE VULNERABILITY TITLE RISK
2020-04-16 CVE-2020-2179 Deserialization of Untrusted Data vulnerability in Jenkins Yaml Axis
Jenkins Yaml Axis Plugin 0.2.0 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.
network
low complexity
jenkins CWE-502
8.8