Description
Jenkins before versions 2.44, 2.32.2 is vulnerable to a remote code execution vulnerability involving the deserialization of various types in javax.imageio in XStream-based APIs (SECURITY-383).
Remediation
References
Related Vulnerabilities
WordPress Plugin YOP Poll Cross-Site Scripting (6.0.2)
Undertow Unchecked Return Value Vulnerability (CVE-2022-1319)
WordPress Plugin Bongolive SMS Cross-Site Scripting (1.0.5)
MySQL CVE-2016-8327 Vulnerability (CVE-2016-8327)
Rukovoditel Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-30224)