GHSA-f46p-q6jh-226m
GitHub Security Advisory
Incorrect Authorization in Jenkins Kubernetes :: Pipeline :: Arquillian Steps Plugin
✓ GitHub Reviewed
CRITICAL
Has CVE
Advisory Details
Jenkins Kubernetes :: Pipeline :: Arquillian Steps Plugin provides a custom whitelist for script security that allowed attackers to invoke arbitrary methods, bypassing typical sandbox protection.
Affected Packages
Maven
io.fabric8.pipeline:kubernetes-pipeline-arquillian-steps
Affected versions:
0
(last affected: 1.6)
Related CVEs
Key Information
9.0
/10
Dataset
Last updated: August 27, 2025 6:31 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.