cbcvebase.
CVE-2023-49656
published 2023-11-29

CVE-2023-49656: Jenkins MATLAB Plugin 2.11.0 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
Jenkins MATLAB Plugin 2.11.0 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

Affected

5 ranges
VendorProductVersion rangeFixed in
jenkinsgoogle_compute_engine_plugin
jenkinsjira_plugin
jenkinsmatlab< 2.11.12.11.1
jenkinsmatlab_plugin
jenkins_projectjenkins_matlab_plugin<= 2.11.0