jenkins

1,755 tracked vulnerabilities.

CVE-2016-9299 CRITICAL NUCLEI
Jenkins < 2.32 and LTS < 2.19.3 - Remote Code Execution via LDAP Query Injection
Jan 12, 2017
CVSS 9.8
EPSS 0.89
CVE-2016-3727 MEDIUM
Jenkins <2.3, <1.651.2 - Info Disclosure
May 17, 2016
CVSS 4.3
EPSS 0.00
CVE-2016-3726 HIGH
Jenkins <2.3, <1.651.2 - Open Redirect
May 17, 2016
CVSS 7.4
EPSS 0.00
CVE-2016-3725 MEDIUM
Jenkins <2.3 & LTS <1.651.2 - Privilege Escalation
May 17, 2016
CVSS 4.3
EPSS 0.00
CVE-2016-3724 MEDIUM
Jenkins <2.3 & LTS <1.651.2 - Info Disclosure
May 17, 2016
CVSS 6.5
EPSS 0.00
CVE-2016-3723 MEDIUM
Jenkins <2.3 & LTS <1.651.2 - Info Disclosure
May 17, 2016
CVSS 4.3
EPSS 0.00
CVE-2016-3722 MEDIUM
Jenkins < 2.3 and LTS < 1.651.2 - Authenticated Denial of Service via Full Name Edit
May 17, 2016
CVSS 4.3
EPSS 0.00
CVE-2016-3721 MEDIUM
Jenkins <2.3, <1.651.2 - Command Injection
May 17, 2016
CVSS 4.3
EPSS 0.00
CVE-2016-0792 HIGH
Jenkins XStream Groovy classpath Deserialization Vulnerability
Apr 07, 2016
CVSS 8.8
EPSS 0.91
CVE-2016-0791 CRITICAL
Jenkins <1.650-1.642.2 - CSRF Bypass
Apr 07, 2016
CVSS 9.8
EPSS 0.00
CVE-2016-0790 MEDIUM
Jenkins <1.650-1.642.2 - Info Disclosure
Apr 07, 2016
CVSS 5.3
EPSS 0.00
CVE-2016-0789 MEDIUM
Jenkins <1.650-1.642.2 - CRLF Injection
Apr 07, 2016
CVSS 6.1
EPSS 0.00
CVE-2016-0788 CRITICAL
Jenkins < 1.650 - Remote Code Execution via JRMP Listener
Apr 07, 2016
CVSS 9.8
EPSS 0.37
CVE-2015-5298 MEDIUM
Google Login Plugin <1.2 - Auth Bypass
Jul 07, 2022
CVSS 6.5
EPSS 0.00
CVE-2015-1811 HIGH
CloudBees Jenkins < 1.596.1 and < 1.600 - XML External Entity Injection
Jan 15, 2020
CVSS 7.5
EPSS 0.00
CVE-2015-1809 HIGH
CloudBees Jenkins < 1.600 and LTS < 1.596.1 - XML External Entity Injection via XPath Query
Jan 15, 2020
CVSS 7.5
EPSS 0.00
CVE-2015-7539 HIGH
Jenkins < 1.640 and LTS < 1.625.2 - Unauthenticated Arbitrary Code Execution via Plugin Checksum Bypass
Feb 03, 2016
CVSS 7.5
EPSS 0.01
CVE-2015-7538 HIGH
Jenkins <1.640-1.625.2 - CSRF Bypass
Feb 03, 2016
CVSS 8.8
EPSS 0.00
CVE-2015-7537 HIGH
Jenkins <1.640-1.625.2 - CSRF
Feb 03, 2016
CVSS 8.8
EPSS 0.00
CVE-2015-7536 MEDIUM
Jenkins < 1.640 and LTS < 1.625.2 - Authenticated Cross-Site Scripting via Workspace and Archived Artifacts
Feb 03, 2016
CVSS 5.4
EPSS 0.00
CVE-2015-8103 CRITICAL
Jenkins CLI RMI Java Deserialization Vulnerability
Nov 25, 2015
CVSS 9.8
EPSS 0.86
CVE-2015-5326
Jenkins < 1.638 and LTS < 1.625.2 - Authenticated Cross-Site Scripting via Slave Offline Status Message
Nov 25, 2015
EPSS 0.00
CVE-2015-5325
Jenkins <1.638, <1.625.2 - Auth Bypass
Nov 25, 2015
EPSS 0.00
CVE-2015-5324
Jenkins <1.638-1.625.2 - Info Disclosure
Nov 25, 2015
EPSS 0.00
CVE-2015-5323
Jenkins <1.638-1.625.2 - Privilege Escalation
Nov 25, 2015
EPSS 0.00