Unsafe entry in Script Security list of approved signatures in Pipeline Remote Loader Plugin
Details
Jenkins Pipeline Remote Loader Plugin before 1.5 provided a custom whitelist for script security that allowed attackers to invoke arbitrary methods, bypassing typical sandbox protection.