← back
CVE-2022-30948

CVE-2022-30948

EPSS 1.3%
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 1.3%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
17 May 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Jenkins Mercurial Plugin 2.16 and earlier allows attackers able to configure pipelines to check out some SCM repositories stored on the Jenkins controller's file system using local paths as SCM URLs, obtaining limited information about other projects' SCM contents.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →