org.jenkins-ci.plugins
1,024 tracked vulnerabilities.
CVE-2022-41230
MEDIUM
Jenkins Build-Publisher Plugin <1.22 - Info Disclosure
Sep 21, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-41225
MEDIUM
Jenkins Anchore Container Image Scanner Plugin <1.0.24 - XSS
Sep 21, 2022
CVSS 5.4
EPSS 0.21
CVE-2022-38665
MEDIUM
Jenkins CollabNet Plugins <2.0.8 - Info Disclosure
Aug 23, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-38664
MEDIUM
Jenkins Job Configuration History Plugin <1165.v8cc9fd1f4597 - XSS
Aug 23, 2022
CVSS 5.4
EPSS 0.16
CVE-2022-38663
MEDIUM
Jenkins Git Plugin <4.11.4 - Info Disclosure
Aug 23, 2022
CVSS 6.5
EPSS 0.02
CVE-2022-36922
MEDIUM
Jenkins Lucene-Search Plugin < 370.v62a5f618cd3a - Reflected Cross-Site Scripting via Search Query Parameter
Jul 27, 2022
CVSS 6.1
EPSS 0.11
CVE-2022-36921
HIGH
Jenkins Coverity Plugin < 1.11.4 - Missing Authorization for Credential Capture via URL Connection
Jul 27, 2022
CVSS 8.1
EPSS 0.01
CVE-2022-36920
HIGH
Jenkins Coverity Plugin < 1.11.4 - Cross-Site Request Forgery
Jul 27, 2022
CVSS 8.8
EPSS 0.00
CVE-2022-36919
MEDIUM
Jenkins Coverity Plugin < 1.11.4 - Credential ID Enumeration via Missing Permission Check
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36918
MEDIUM
Jenkins Buckminster Plugin < 1.1.1 - File Existence Disclosure via Form Validation
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36917
MEDIUM
Jenkins Google Cloud Backup Plugin < 0.6 - Missing Authorization for Manual Backup Request
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36916
HIGH
Jenkins Google Cloud Backup Plugin < 0.6 - Cross-Site Request Forgery
Jul 27, 2022
CVSS 8.0
EPSS 0.00
CVE-2022-36915
MEDIUM
Jenkins Android Signing Plugin < 2.2.5 - Missing Authorization in Form Validation
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36914
MEDIUM
Jenkins Files Found Trigger Plugin <= 1.5 - Missing Authorization for File Existence Check
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36913
MEDIUM
Jenkins Openstack Heat Plugin < 1.5 - Unauthenticated Path Disclosure via Form Validation
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36912
MEDIUM
Jenkins Openstack Heat Plugin < 1.5 - Server-Side Request Forgery via URL Connection
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36911
MEDIUM
Jenkins Openstack Heat Plugin < 1.5 - Cross-Site Request Forgery
Jul 27, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-36910
MEDIUM
Jenkins Lucene-Search Plugin < 370.v62a5f618cd3a - Missing Authorization in HTTP Endpoints
Jul 27, 2022
CVSS 5.4
EPSS 0.00
CVE-2022-36909
MEDIUM
Jenkins OpenShift Deployer Plugin < 1.2.0 - Missing Authorization
Jul 27, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-36908
MEDIUM
Jenkins OpenShift Deployer Plugin < 1.2.0 - Cross-Site Request Forgery
Jul 27, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-36907
MEDIUM
Jenkins OpenShift Deployer Plugin < 1.2.0 - Missing Authorization
Jul 27, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-36906
MEDIUM
Jenkins OpenShift Deployer Plugin < 1.2.0 - Cross-Site Request Forgery
Jul 27, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-36904
MEDIUM
Jenkins Repository Connector < 2.2.0 - Missing Authorization for File Path Existence Check
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36903
MEDIUM
Jenkins Repository Connector < 2.2.0 - Missing Authorization for Credential ID Enumeration
Jul 27, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-36901
MEDIUM
Jenkins HTTP Request Plugin < 1.15 - Insufficiently Protected Credentials
Jul 27, 2022
CVSS 6.5
EPSS 0.00
Products
script-security 35
git 13
email-ext 11
active-directory 9
config-file-provider 9
electricflow 9
ec2 8
oic-auth 8
subversion 8
artifactory 7
credentials-binding 7
htmlpublisher 7
jobConfigHistory 7
mercurial 7
openshift-deployer 7
rundeck 7
azure-ad 6
azure-vm-agents 6
ec2-deployment-dashboard 6
fortify-on-demand-uploader 6
ghprb 6
gitlab-oauth 6
gitlab-plugin 6
pipeline-maven 6
repository-connector 6
aws-codecommit-trigger 5
codedx 5
credentials 5
delphix 5
extended-choice-parameter 5
Quick Filters