XML injection (XXE) In org.jenkins-ci.main:jenkins-core

Description

XML external entity (XXE) vulnerability in Jenkins XML external entity (XXE) vulnerability in Jenkins before 1.600 and LTS before 1.596.1 allows remote attackers to read arbitrary XML files via a crafted XML document.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Package
Affected version
Patched versions