CVE-2020-15769: XSS
Published Sep 18, 2020
·Updated
An issue was discovered in Gradle Enterprise 2020.2 - 2020.2.4. An XSS issue exists via the request URL.
Affected Software
1 affected component
Gradle Enterprise>=2020.2<=2020.2.4
Event History
Sep 18, 2020
CVE Published
via MITRE·01:10 PM
Data Sourced
via MITRE·01:10 PM
Description
Frequently Asked Questions
1
What is CVE-2020-15769?
CVE-2020-15769 is a vulnerability in Gradle Enterprise version 2020.2 - 2020.2.4 that allows for cross-site scripting (XSS) attacks via the request URL.
2
How severe is CVE-2020-15769?
CVE-2020-15769 has a severity rating of medium with a CVSSv3 score of 6.1.
3
How can I fix CVE-2020-15769?
To fix CVE-2020-15769, it is recommended to upgrade Gradle Enterprise to version 2020.2.5 or later.
4
Where can I find more information about CVE-2020-15769?
More information about CVE-2020-15769 can be found at the following references: [GitHub](https://github.com/gradle/gradle/security/advisories) and [Security Gradle](https://security.gradle.com/advisory/CVE-2020-15769).
5
What is the CWE ID for CVE-2020-15769?
The CWE ID for CVE-2020-15769 is 79.