File tree Expand file tree Collapse file tree 4 files changed +16
-3
lines changed Expand file tree Collapse file tree 4 files changed +16
-3
lines changed Original file line number Diff line number Diff line change 1
1
---
2
- order : 1500
2
+ order : 2000
3
3
---
4
4
5
5
# Log4Shell / Log4j Security
Original file line number Diff line number Diff line change 1
1
---
2
- order : 800
2
+ order : 1800
3
3
---
4
4
5
5
# CVE-2016 -1000027
Original file line number Diff line number Diff line change
1
+ ---
2
+ order : 1300
3
+ ---
4
+
5
+
6
+ # CVE-2020 -0187
7
+
8
+ ::: danger FALSE POSITIVE
9
+ Rundeck and Runbook Automation are not vulnerable to this CVE.
10
+ :::
11
+
12
+ This finding is only vulnerable on Android 10. It does not apply to Rundeck or Runbook Automation products.
Original file line number Diff line number Diff line change @@ -34,10 +34,11 @@ These are the Security Advisories Rundeck has issued in the past. It is always
34
34
## Additional CVE Notes
35
35
36
36
* Log4j / Log4Shell will flag a false positive vulnerability related to our JIRA plugins. [ More Details on this page] ( log4j.md )
37
+ * [ CVE-2016 -1000027 Spring Unsafe Java deserialization] ( cve-2016-1000027.md ) .
38
+ * [ CVE-2020 -0187 Android 10 Finding] ( cve-2020-0187.md ) .
37
39
* [ CVE-2022 -45868 H2 DB false positive] ( cve-2022-45868.md ) .
38
40
* [ CVE-2022 -1471 SnakeYAML false positive] ( cve-2022-1471.md ) .
39
41
* [ CVE-2024 -1597 Postgres JDBC Driver Vulnerability] ( cve-2024-1597.md ) .
40
- * [ CVE-2016 -1000027 Spring Unsafe Java deserialization] ( cve-2016-1000027.md ) .
41
42
* [ CVE-2023 -39017 Quartz Scheduler false positive] ( cve-2023-39017.md ) .
42
43
* [ CVE-2024 -24786 Protobuf finding in Remco] ( cve-2024-38807.md ) .
43
44
* [ CVE-2024 -38807 Spring Boot false positive] ( cve-2024-38807.md ) .
You can’t perform that action at this time.
0 commit comments