GHSA-9fp8-64xf-w957
GitHub Security Advisory
Sandbox bypass vulnerability in Script Security Plugin
✓ GitHub Reviewed
MODERATE
Has CVE
Advisory Details
A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.62 and earlier related to the handling of method names in method call expressions allowed attackers to execute arbitrary code in sandboxed scripts.
Affected Packages
Maven
org.jenkins-ci.plugins:script-security
Affected versions:
0
(fixed in 1.63)
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: July 7, 2025 6:28 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.