GHSA-76q7-r3g4-wvm4
GitHub Security Advisory
Sandbox bypass vulnerability in Jenkins Script Security Plugin
✓ GitHub Reviewed
MODERATE
Has CVE
Advisory Details
A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of subexpressions in increment and decrement expressions not involving actual assignment allowed attackers to execute arbitrary code in sandboxed scripts.
Affected Packages
Maven
org.jenkins-ci.plugins:script-security
Affected versions:
0
(fixed in 1.63)
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: July 6, 2025 6:30 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.