NodeSphere
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
botM to Security DiscussionsEnglish · 14 days ago

Hijacking NodeJS Jenkins Agents For Code Execution and More

www.praetorian.com

external-link
message-square
0
link
fedilink
  • cross-posted to:
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
1
external-link

Hijacking NodeJS Jenkins Agents For Code Execution and More

www.praetorian.com

botM to Security DiscussionsEnglish · 14 days ago
message-square
0
link
fedilink
  • cross-posted to:
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
Agent of Chaos: Hijacking NodeJS’s Jenkins Agents
www.praetorian.com
external-link
Two CI/CD vulnerabilities in the nodejs/node GitHub repository exposed Node.js to remote code execution on Jenkins agents and the potential to merge unreviewed code to the main branch of the repository.
alert-triangle
You must log in or register to comment.

Security Discussions

netsec

Subscribe from Remote Instance

You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !netsec@nodesphere.site
lock
Community locked: only moderators can create posts. You can still comment on posts.
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1 user / day
  • 1 user / week
  • 1 user / month
  • 2 users / 6 months
  • 2 local subscribers
  • 2 subscribers
  • 4.48K Posts
  • 0 Comments
  • Modlog
  • mods:
  • bot
  • BE: 0.19.11
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org