org.jenkins-ci.plugins
1,024 tracked vulnerabilities.
CVE-2021-21676
MEDIUM
Jenkins requests-plugin < 2.2.7 - Missing Authorization in HTTP Endpoint
Jun 30, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21675
MEDIUM
Jenkins requests-plugin < 2.2.12 - Cross-Site Request Forgery
Jun 30, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-21674
MEDIUM
Jenkins requests-plugin <2.2.6 - Info Disclosure
Jun 30, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21673
MEDIUM
Jenkins CAS Plugin < 1.6.0 - Open Redirect via Legitimacy Bypass
Jun 30, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-21672
MEDIUM
Jenkins Selenium HTML Report Plugin <= 1.0 - XML External Entity Injection
Jun 30, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21669
CRITICAL
Jenkins Generic Webhook Trigger Plugin < 1.72 - XML External Entity Injection
Jun 18, 2021
CVSS 9.8
EPSS 0.00
CVE-2021-21668
MEDIUM
Jenkins Scriptler Plugin < 3.1 - Stored Cross-Site Scripting via Unescaped Script Content
Jun 16, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-21667
MEDIUM
Jenkins Scriptler Plugin < 3.2 - Stored Cross-Site Scripting in Job Configuration Forms
Jun 16, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-21666
MEDIUM
Jenkins Kiuwan Plugin < 1.6.0 - Reflected Cross-Site Scripting via Form Validation Endpoint
Jun 10, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-21661
MEDIUM
Jenkins Kubernetes CLI Plugin <1.10.0 - Info Disclosure
Jun 10, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21659
HIGH
Jenkins URLTrigger Plugin < 0.48 - XML External Entity Injection
May 25, 2021
CVSS 8.1
EPSS 0.00
CVE-2021-21658
CRITICAL
Jenkins Nuget Plugin < 1.0 - XML External Entity Injection
May 25, 2021
CVSS 9.1
EPSS 0.01
CVE-2021-21657
HIGH
Jenkins Filesystem Trigger Plugin < 0.40 - XML External Entity Injection
May 25, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-21656
HIGH
Jenkins Xcode integration Plugin < 2.0.14 - XML External Entity Injection
May 11, 2021
CVSS 7.1
EPSS 0.00
CVE-2021-21655
HIGH
Jenkins P4 Plugin < 1.11.4 - Cross-Site Request Forgery
May 11, 2021
CVSS 7.1
EPSS 0.00
CVE-2021-21654
MEDIUM
Jenkins P4 Plugin <1.11.4 - Privilege Escalation
May 11, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21653
MEDIUM
Jenkins Xray - Test Management for Jira Plugin <2.4.0 - Info Disclo...
May 11, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21652
HIGH
Jenkins Xray - Test Management for Jira < 2.4.0 - Cross-Site Request Forgery
May 11, 2021
CVSS 7.1
EPSS 0.00
CVE-2021-21651
MEDIUM
Jenkins S3 publisher Plugin <0.11.6 - Info Disclosure
May 11, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21650
MEDIUM
Jenkins S3 publisher Plugin <0.11.6 - Info Disclosure
May 11, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21649
MEDIUM
Jenkins Dashboard View Plugin < 2.15 - Stored Cross-Site Scripting via Image Dashboard Portlet URL
May 11, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-21648
MEDIUM
Jenkins Credentials Plugin < 2.3.18 - Reflected Cross-Site Scripting
May 11, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-21647
MEDIUM
Jenkins CloudBees CD Plugin <1.1.21 - Privilege Escalation
Apr 21, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21646
HIGH
Jenkins Templating Engine Plugin <2.1 - RCE
Apr 21, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-21645
MEDIUM
Jenkins Config File Provider Plugin <3.7.0 - Info Disclosure
Apr 21, 2021
CVSS 4.3
EPSS 0.00
Products
script-security 35
git 13
email-ext 11
active-directory 9
config-file-provider 9
electricflow 9
ec2 8
oic-auth 8
subversion 8
artifactory 7
credentials-binding 7
htmlpublisher 7
jobConfigHistory 7
mercurial 7
openshift-deployer 7
rundeck 7
azure-ad 6
azure-vm-agents 6
ec2-deployment-dashboard 6
fortify-on-demand-uploader 6
ghprb 6
gitlab-oauth 6
gitlab-plugin 6
pipeline-maven 6
repository-connector 6
aws-codecommit-trigger 5
codedx 5
credentials 5
delphix 5
extended-choice-parameter 5
Quick Filters