Script Security Plugin did not apply sandbox restrictions to various types of expressions. This could be used to invoke arbitrary constructors and methods, bypassing sandbox protection. External References: https://jenkins.io/security/advisory/2017-08-07/
Created jenkins-script-security-plugin tracking bugs for this issue: Affects: fedora-all [bug 1482093]
Statement: Deferred (Low security impact) ======================================= This issue affects the versions of jenkins-plugin-script-security as shipped with Red Hat OpenShift Enterprise. Red Hat Product Security has rated this issue as having Low security impact. A future update may address this issue. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.