Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
CVE-2020-2179
CVE-2020-2179
Jenkins Yaml Axis Plugin 0.2.0 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.
Published Feb 3, 2026
https://jenkins.io/security/advisory/2020-04-16/#SECURITY-1825
CVSS Score
High
8.8
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
maven
org.jenkins-ci.plugins/yaml-axis
0.1.0
maven
org.jenkins-ci.plugins/yaml-axis
0.1.1
maven
org.jenkins-ci.plugins/yaml-axis
0.1.2
maven
org.jenkins-ci.plugins/yaml-axis
0.2.0
1-4 of 4
CVE-2020-2179 | Components Impacted | Sonatype Guide | Sonatype Guide