CVE-2020-2168: Jenkins Azure Container Service
High severity, CVSS 8.8. EPSS: 2% chance of exploitation in the next 30 days.
Jenkins Azure Container Service Plugin 1.0.1 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.
Affected products
- Jenkins Azure Container Service: up to and including 1.0.1
Published 2020-03-25. Last modified 2026-06-17.