Security Advisory

CVE-2025-64134

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-10-29 13:29:41
Last updated 2025-11-04 21:14:26
Assigner jenkins
State PUBLISHED

Description

Jenkins JDepend Plugin 1.3.1 and earlier includes an outdated version of JDepend Maven Plugin that does not configure its XML parser to prevent XML external entity (XXE) attacks.