Description
A sandbox bypass vulnerability in Jenkins Pipeline: Groovy Plugin 2.64 and earlier allows attackers to invoke arbitrary constructors in sandboxed scripts.
Affected products
- Jenkins Project / Jenkins Pipeline: Groovy Plugin2.64 and earlier – 2.64 and earlier