jenkins

1,755 tracked vulnerabilities.

CVE-2020-2102 MEDIUM
Jenkins < 2.204.1 and < 2.218 - Timing Attack via HMAC Validation
Jan 29, 2020
CVSS 5.3
EPSS 0.02
CVE-2020-2101 MEDIUM
Jenkins < 2.204.1 and < 2.218 - Timing Attack via Connection Secret Validation
Jan 29, 2020
CVSS 5.3
EPSS 0.02
CVE-2020-2100 MEDIUM
Jenkins < 2.204.1 and < 2.218 - Denial of Service via UDP Amplification Reflection
Jan 29, 2020
CVSS 5.8
EPSS 0.01
CVE-2020-2099 HIGH
Jenkins <2.213-<2.204.1 - Info Disclosure
Jan 29, 2020
CVSS 8.6
EPSS 0.01
CVE-2020-2098 HIGH
Jenkins Sounds Plugin < 0.5 - Cross-Site Request Forgery
Jan 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-2097 HIGH
Jenkins Sounds Plugin < 0.5 - OS Command Execution via Form Validation URL
Jan 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-2096 MEDIUM NUCLEI
Jenkins Gitlab Hook Plugin < 1.4.2 - Reflected Cross-Site Scripting via Build Now Endpoint
Jan 15, 2020
CVSS 6.1
EPSS 0.93
CVE-2020-2095 MEDIUM
Jenkins Redgate SQL Change Automation Plugin < 2.0.4 - Insufficiently Protected Credentials in Job Config
Jan 15, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2094 MEDIUM
Jenkins Health Advisor by CloudBees < 3.0 - Missing Authorization for Email Sending
Jan 15, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2093 HIGH
Jenkins Health Advisor by CloudBees < 3.0 - Cross-Site Request Forgery
Jan 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-2092 HIGH
Jenkins Robot Framework < 2.0.0 - XML External Entity Injection
Jan 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-2091 HIGH
Jenkins Amazon EC2 Plugin < 1.47 - Server-Side Request Forgery via AWS Credentials
Jan 15, 2020
CVSS 8.1
EPSS 0.00
CVE-2020-2090 HIGH
Jenkins Amazon EC2 Plugin < 1.47 - Cross-Site Request Forgery
Jan 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2019-16576 MEDIUM
Jenkins Alauda Kubernetes Suport Plugin <2.3.0 - SSRF
Dec 17, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-16575 HIGH
Jenkins Alauda Kubernetes Suport Plugin <2.3.0 - CSRF
Dec 17, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-16574 MEDIUM
Jenkins Alauda DevOps Pipeline Plugin <2.3.2 - SSRF
Dec 17, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-16573 HIGH
Jenkins Alauda DevOps Pipeline Plugin <2.3.2 - CSRF
Dec 17, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-16572 MEDIUM
Jenkins Weibo Plugin <1.0.1 - Info Disclosure
Dec 17, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-16571 MEDIUM
Jenkins RapidDeploy Plugin <4.1 - DoS
Dec 17, 2019
CVSS 4.3
EPSS 0.00
CVE-2019-16570 HIGH
Jenkins RapidDeploy Plugin <4.1 - CSRF
Dec 17, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-16569 MEDIUM
Jenkins Mantis Plugin < 0.26 - Cross-Site Request Forgery
Dec 17, 2019
CVSS 4.3
EPSS 0.00
CVE-2019-16568 MEDIUM
Jenkins SCTMExecutor Plugin <2.2 - Info Disclosure
Dec 17, 2019
CVSS 5.3
EPSS 0.00
CVE-2019-16567 MEDIUM
Jenkins Team Concert Plugin <1.3.0 - Info Disclosure
Dec 17, 2019
CVSS 4.3
EPSS 0.00
CVE-2019-16566 MEDIUM
Jenkins Team Concert Plugin <1.3.0 - SSRF
Dec 17, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-16565 HIGH
Jenkins Team Concert Plugin <1.3.0 - CSRF
Dec 17, 2019
CVSS 8.8
EPSS 0.00