CVE-2020-15774: Gradle Enterprise
Medium severity, CVSS 6.8. EPSS: 0.3% chance of exploitation in the next 30 days.
An issue was discovered in Gradle Enterprise 2018.5 - 2020.2.4. An attacker with physical access to the browser of a user who has recently logged in to Gradle Enterprise and since closed their browser could reopen their browser to access Gradle Enterprise as that user.
Affected products
- Gradle Enterprise: from 2018.5, up to and including 2020.2.4
Published 2020-09-18. Last modified 2026-06-17.