Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Gradle Enterprise before 2021.1.3 can allow unauthorized viewing of a response (information disclosure of possibly sensitive build/configuration details) via a crafted HTTP request with the X-Gradle-Enterprise-Ajax-Request header.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gradle 信息泄露漏洞
Vulnerability Description
Gradle是美国Gradle公司的一套基于JVM的项目构建工具,它支持maven、Ivy仓库等。 Gradle Enterprise 存在信息泄露漏洞,该漏洞源于 Gradle Enterprise 可以允许通过带有 X-Gradle-Enterprise-Ajax-Request 标头的精心设计的 HTTP 请求未经授权查看响应。
CVSS Information
N/A
Vulnerability Type
N/A