First published: Fri Sep 18 2020(Updated: )
An issue was discovered in Gradle Enterprise 2020.2 - 2020.2.4. An XSS issue exists via the request URL.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Gradle Enterprise | >=2020.2<=2020.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-15769 is a vulnerability in Gradle Enterprise version 2020.2 - 2020.2.4 that allows for cross-site scripting (XSS) attacks via the request URL.
CVE-2020-15769 has a severity rating of medium with a CVSSv3 score of 6.1.
To fix CVE-2020-15769, it is recommended to upgrade Gradle Enterprise to version 2020.2.5 or later.
More information about CVE-2020-15769 can be found at the following references: [GitHub](https://github.com/gradle/gradle/security/advisories) and [Security Gradle](https://security.gradle.com/advisory/CVE-2020-15769).
The CWE ID for CVE-2020-15769 is 79.