CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Jenkins. Its EPSS score suggests a 25.7% probability of exploitation in the next 30 days.
CVE
CVE-2021-21669
Severity
CRITICAL
CVSS
9.8
EPSS
25.75%
Jenkins
Original NVD Description
Jenkins Generic Webhook Trigger Plugin 1.72 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
Related CVEs
Other vulnerabilities affecting the same vendor(s)