← Back to browse · API

CVE-2026-70448

Severity
HIGH
CVSS
7.1
Published
2026-08-05
Modified
2026-08-05
First seen
2026-08-06
Aliases
-
Products
-
Sources
nvd CVE-2026-70448

Description

Jenkins Ivy Report Plugin 1.2 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks when processing Ivy report files.

References