jenkins

1,755 tracked vulnerabilities.

CVE-2020-2152 MEDIUM
Jenkins Subversion Release Manager Plugin < 1.2 - Reflected Cross-Site Scripting via Repository URL Field
Mar 09, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2151 MEDIUM
Jenkins Quality Gates Plugin < 2.5 - Cleartext Transmission of Sensitive Information in Global Configuration Form
Mar 09, 2020
CVSS 5.3
EPSS 0.00
CVE-2020-2150 MEDIUM
Jenkins Sonar Quality Gates Plugin < 1.3.1 - Cleartext Transmission of Sensitive Credentials
Mar 09, 2020
CVSS 5.3
EPSS 0.00
CVE-2020-2149 MEDIUM
Jenkins Repository Connector Plugin < 1.2.6 - Cleartext Transmission of Sensitive Credentials
Mar 09, 2020
CVSS 5.3
EPSS 0.00
CVE-2020-2148 MEDIUM
Jenkins Mac Plugin < 1.1.0 - Missing Permission Check for SSH Connection
Mar 09, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2147 MEDIUM
Jenkins Mac Plugin < 1.1.0 - Cross-Site Request Forgery
Mar 09, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2146 HIGH
Jenkins Mac Plugin < 1.1.0 - Improper Verification of Cryptographic Signature
Mar 09, 2020
CVSS 7.4
EPSS 0.00
CVE-2020-2145 MEDIUM
Jenkins Zephyr Enterprise Test Management Plugin < 1.9.1 - Insufficiently Protected Credentials
Mar 09, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-2144 HIGH
Jenkins Rundeck Plugin < 3.6.6 - XML External Entity Injection
Mar 09, 2020
CVSS 7.1
EPSS 0.00
CVE-2020-2143 MEDIUM
Jenkins Logstash Plugin < 2.3.1 - Cleartext Transmission of Sensitive Credentials
Mar 09, 2020
CVSS 5.3
EPSS 0.00
CVE-2020-2142 MEDIUM
Jenkins P4 Plugin < 1.10.10 - Unauthenticated Build Trigger via Missing Permission Check
Mar 09, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2141 MEDIUM
Jenkins P4 Plugin < 1.10.10 - Cross-Site Request Forgery
Mar 09, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2140 MEDIUM NUCLEI
Jenkins Audit Trail Plugin < 3.2 - Reflected Cross-Site Scripting via URL Patterns Field
Mar 09, 2020
CVSS 6.1
EPSS 0.45
CVE-2020-2139 MEDIUM
Jenkins Cobertura < 1.16 - Arbitrary File Write via Coverage Report File
Mar 09, 2020
CVSS 6.5
EPSS 0.05
CVE-2020-2138 HIGH
Jenkins Cobertura Plugin < 1.15 - XML External Entity Injection
Mar 09, 2020
CVSS 7.1
EPSS 0.00
CVE-2020-2137 MEDIUM
Jenkins Timestamper Plugin <= 1.11.1 - Stored Cross-Site Scripting
Mar 09, 2020
CVSS 4.8
EPSS 0.00
CVE-2020-2136 MEDIUM
Jenkins Git Plugin < 4.2.0 - Stored Cross-Site Scripting via Repository URL Error Message
Mar 09, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-2135 HIGH
Jenkins Script Security Plugin < 1.70 - Sandbox Bypass via GroovyInterceptable Method Calls
Mar 09, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-2134 HIGH
Jenkins Script Security Plugin < 1.70 - Sandbox Bypass via Crafted Constructor Calls
Mar 09, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-2133 MEDIUM
Jenkins Applatix Plugin < 1.1 - Insufficiently Protected Credentials in Job Config
Feb 12, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-2132 MEDIUM
Jenkins Parasoft Environment Manager Plugin < 2.14 - Insufficiently Protected Credentials in Job Config
Feb 12, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-2131 MEDIUM
Jenkins Harvest SCM Plugin <= 0.5.1 - Insufficiently Protected Credentials in Job config.xml
Feb 12, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-2130 MEDIUM
Jenkins Harvest SCM Plugin <= 0.5.1 - Insufficiently Protected Credentials
Feb 12, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-2129 MEDIUM
Jenkins Eagle Tester Plugin < 1.0.9 - Insufficiently Protected Credentials
Feb 12, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-2128 MEDIUM
Jenkins ECX Copy Data Management Plugin < 1.9 - Unencrypted Password Storage in Job Config
Feb 12, 2020
CVSS 4.3
EPSS 0.00