Jenkins Script Security Plugin Sandbox Circumvention Vulnerability
CVE-2020-2135
What is CVE-2020-2135?
The Jenkins Script Security Plugin, versions 1.70 and earlier, is subject to a vulnerability that enables the circumvention of sandbox protection mechanisms. This flaw arises when crafted method calls are made on objects implementing GroovyInterceptable, potentially allowing unauthorized script execution in a Jenkins environment. This could lead to elevation of privileges for an attacker. Organizations using this plugin should update to the latest versions to mitigate the risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Jenkins Script Security Plugin <= 1.70
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved