jenkins
1,755 tracked vulnerabilities.
CVE-2020-2102
MEDIUM
Jenkins < 2.204.1 and < 2.218 - Timing Attack via HMAC Validation
Jan 29, 2020
CVSS 5.3
EPSS 0.02
CVE-2020-2101
MEDIUM
Jenkins < 2.204.1 and < 2.218 - Timing Attack via Connection Secret Validation
Jan 29, 2020
CVSS 5.3
EPSS 0.02
CVE-2020-2100
MEDIUM
Jenkins < 2.204.1 and < 2.218 - Denial of Service via UDP Amplification Reflection
Jan 29, 2020
CVSS 5.8
EPSS 0.01
CVE-2020-2099
HIGH
Jenkins <2.213-<2.204.1 - Info Disclosure
Jan 29, 2020
CVSS 8.6
EPSS 0.01
CVE-2020-2098
HIGH
Jenkins Sounds Plugin < 0.5 - Cross-Site Request Forgery
Jan 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-2097
HIGH
Jenkins Sounds Plugin < 0.5 - OS Command Execution via Form Validation URL
Jan 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-2096
MEDIUM
NUCLEI
Jenkins Gitlab Hook Plugin < 1.4.2 - Reflected Cross-Site Scripting via Build Now Endpoint
Jan 15, 2020
CVSS 6.1
EPSS 0.93
CVE-2020-2095
MEDIUM
Jenkins Redgate SQL Change Automation Plugin < 2.0.4 - Insufficiently Protected Credentials in Job Config
Jan 15, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2094
MEDIUM
Jenkins Health Advisor by CloudBees < 3.0 - Missing Authorization for Email Sending
Jan 15, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2093
HIGH
Jenkins Health Advisor by CloudBees < 3.0 - Cross-Site Request Forgery
Jan 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-2092
HIGH
Jenkins Robot Framework < 2.0.0 - XML External Entity Injection
Jan 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-2091
HIGH
Jenkins Amazon EC2 Plugin < 1.47 - Server-Side Request Forgery via AWS Credentials
Jan 15, 2020
CVSS 8.1
EPSS 0.00
CVE-2020-2090
HIGH
Jenkins Amazon EC2 Plugin < 1.47 - Cross-Site Request Forgery
Jan 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2019-16576
MEDIUM
Jenkins Alauda Kubernetes Suport Plugin <2.3.0 - SSRF
Dec 17, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-16575
HIGH
Jenkins Alauda Kubernetes Suport Plugin <2.3.0 - CSRF
Dec 17, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-16574
MEDIUM
Jenkins Alauda DevOps Pipeline Plugin <2.3.2 - SSRF
Dec 17, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-16573
HIGH
Jenkins Alauda DevOps Pipeline Plugin <2.3.2 - CSRF
Dec 17, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-16572
MEDIUM
Jenkins Weibo Plugin <1.0.1 - Info Disclosure
Dec 17, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-16571
MEDIUM
Jenkins RapidDeploy Plugin <4.1 - DoS
Dec 17, 2019
CVSS 4.3
EPSS 0.00
CVE-2019-16570
HIGH
Jenkins RapidDeploy Plugin <4.1 - CSRF
Dec 17, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-16569
MEDIUM
Jenkins Mantis Plugin < 0.26 - Cross-Site Request Forgery
Dec 17, 2019
CVSS 4.3
EPSS 0.00
CVE-2019-16568
MEDIUM
Jenkins SCTMExecutor Plugin <2.2 - Info Disclosure
Dec 17, 2019
CVSS 5.3
EPSS 0.00
CVE-2019-16567
MEDIUM
Jenkins Team Concert Plugin <1.3.0 - Info Disclosure
Dec 17, 2019
CVSS 4.3
EPSS 0.00
CVE-2019-16566
MEDIUM
Jenkins Team Concert Plugin <1.3.0 - SSRF
Dec 17, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-16565
HIGH
Jenkins Team Concert Plugin <1.3.0 - CSRF
Dec 17, 2019
CVSS 8.8
EPSS 0.00
Products
jenkins 259
pipeline\ 37
script_security 33
blue_ocean 11
git 11
email_extension 10
active_directory 9
build_failure_analyzer 9
config_file_provider 9
configuration_as_code 9
ns-nd_integration_performance_publisher 8
credentials_binding 7
github_branch_source 7
html_publisher 7
kubernetes 7
openid_connect_authentication 7
openshift_deployer 7
rundeck 7
subversion 7
amazon_ec2 6
azure_ad 6
azure_vm_agents 6
deployment_dashboard 6
electricflow 6
gerrit_trigger 6
github 6
github_pull_request_builder 6
gitlab 6
google_compute_engine 6
hashicorp_vault 6
Quick Filters