org.jenkins-ci.plugins

1,024 tracked vulnerabilities.

CVE-2022-41230 MEDIUM
Jenkins Build-Publisher Plugin <1.22 - Info Disclosure
Sep 21, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-41225 MEDIUM
Jenkins Anchore Container Image Scanner Plugin <1.0.24 - XSS
Sep 21, 2022
CVSS 5.4
EPSS 0.21
CVE-2022-38665 MEDIUM
Jenkins CollabNet Plugins <2.0.8 - Info Disclosure
Aug 23, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-38664 MEDIUM
Jenkins Job Configuration History Plugin <1165.v8cc9fd1f4597 - XSS
Aug 23, 2022
CVSS 5.4
EPSS 0.16
CVE-2022-38663 MEDIUM
Jenkins Git Plugin <4.11.4 - Info Disclosure
Aug 23, 2022
CVSS 6.5
EPSS 0.02
CVE-2022-36922 MEDIUM
Jenkins Lucene-Search Plugin < 370.v62a5f618cd3a - Reflected Cross-Site Scripting via Search Query Parameter
Jul 27, 2022
CVSS 6.1
EPSS 0.11
CVE-2022-36921 HIGH
Jenkins Coverity Plugin < 1.11.4 - Missing Authorization for Credential Capture via URL Connection
Jul 27, 2022
CVSS 8.1
EPSS 0.01
CVE-2022-36920 HIGH
Jenkins Coverity Plugin < 1.11.4 - Cross-Site Request Forgery
Jul 27, 2022
CVSS 8.8
EPSS 0.00
CVE-2022-36919 MEDIUM
Jenkins Coverity Plugin < 1.11.4 - Credential ID Enumeration via Missing Permission Check
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36918 MEDIUM
Jenkins Buckminster Plugin < 1.1.1 - File Existence Disclosure via Form Validation
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36917 MEDIUM
Jenkins Google Cloud Backup Plugin < 0.6 - Missing Authorization for Manual Backup Request
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36916 HIGH
Jenkins Google Cloud Backup Plugin < 0.6 - Cross-Site Request Forgery
Jul 27, 2022
CVSS 8.0
EPSS 0.00
CVE-2022-36915 MEDIUM
Jenkins Android Signing Plugin < 2.2.5 - Missing Authorization in Form Validation
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36914 MEDIUM
Jenkins Files Found Trigger Plugin <= 1.5 - Missing Authorization for File Existence Check
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36913 MEDIUM
Jenkins Openstack Heat Plugin < 1.5 - Unauthenticated Path Disclosure via Form Validation
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36912 MEDIUM
Jenkins Openstack Heat Plugin < 1.5 - Server-Side Request Forgery via URL Connection
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36911 MEDIUM
Jenkins Openstack Heat Plugin < 1.5 - Cross-Site Request Forgery
Jul 27, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-36910 MEDIUM
Jenkins Lucene-Search Plugin < 370.v62a5f618cd3a - Missing Authorization in HTTP Endpoints
Jul 27, 2022
CVSS 5.4
EPSS 0.00
CVE-2022-36909 MEDIUM
Jenkins OpenShift Deployer Plugin < 1.2.0 - Missing Authorization
Jul 27, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-36908 MEDIUM
Jenkins OpenShift Deployer Plugin < 1.2.0 - Cross-Site Request Forgery
Jul 27, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-36907 MEDIUM
Jenkins OpenShift Deployer Plugin < 1.2.0 - Missing Authorization
Jul 27, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-36906 MEDIUM
Jenkins OpenShift Deployer Plugin < 1.2.0 - Cross-Site Request Forgery
Jul 27, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-36904 MEDIUM
Jenkins Repository Connector < 2.2.0 - Missing Authorization for File Path Existence Check
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36903 MEDIUM
Jenkins Repository Connector < 2.2.0 - Missing Authorization for Credential ID Enumeration
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36901 MEDIUM
Jenkins HTTP Request Plugin < 1.15 - Insufficiently Protected Credentials
Jul 27, 2022
CVSS 6.5
EPSS 0.00