Headline
GHSA-j3h2-8mf8-j5r2: Hudson XML API susceptible to External Entity Injection Vunerability prior to v3.3.2
In versions prior to 3.3.2, Hudson exhibits a flaw in its XML API processing that can allow access to potentially sensitive information on the filesystem of the Hudson master server.
Hudson XML API susceptible to External Entity Injection Vunerability prior to v3.3.2
High severity GitHub Reviewed Published Jul 15, 2022 • Updated Jul 15, 2022
Related news
CVE-2015-8031: CVE-2015-8031 - GitHub Advisory Database
Hudson (aka org.jvnet.hudson.main:hudson-core) before 3.3.2 allows XXE attacks.