-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| com.openshift.jenkins:openshift-pipeline | maven | <= 1.0.56 | 1.0.57 |
The vulnerability stems from improper YAML deserialization configuration (CWE-502). While exact function names/paths aren't disclosed in advisories, the pattern matches known YAML deserialization vulnerabilities where:
Ongoing coverage of React2Shell