Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Gradle Enterprise 2018.5 - 2020.2.4. An attacker with physical access to the browser of a user who has recently logged in to Gradle Enterprise and since closed their browser could reopen their browser to access Gradle Enterprise as that user.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gradle 代码问题漏洞
Vulnerability Description
Gradle是美国Gradle公司的一套基于JVM的项目构建工具,它支持maven、Ivy仓库等。 Gradle Enterprise 2018.5版本至2020.2.4版本存在代码问题漏洞。该漏洞源于隐式记住用户登录信息,物理上近似攻击者可以在浏览器关闭后使用用户会话。
CVSS Information
N/A
Vulnerability Type
N/A