org.jenkins-ci.plugins

1,024 tracked vulnerabilities.

CVE-2021-21676 MEDIUM
Jenkins requests-plugin < 2.2.7 - Missing Authorization in HTTP Endpoint
Jun 30, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21675 MEDIUM
Jenkins requests-plugin < 2.2.12 - Cross-Site Request Forgery
Jun 30, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-21674 MEDIUM
Jenkins requests-plugin <2.2.6 - Info Disclosure
Jun 30, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21673 MEDIUM
Jenkins CAS Plugin < 1.6.0 - Open Redirect via Legitimacy Bypass
Jun 30, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-21672 MEDIUM
Jenkins Selenium HTML Report Plugin <= 1.0 - XML External Entity Injection
Jun 30, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21669 CRITICAL
Jenkins Generic Webhook Trigger Plugin < 1.72 - XML External Entity Injection
Jun 18, 2021
CVSS 9.8
EPSS 0.00
CVE-2021-21668 MEDIUM
Jenkins Scriptler Plugin < 3.1 - Stored Cross-Site Scripting via Unescaped Script Content
Jun 16, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-21667 MEDIUM
Jenkins Scriptler Plugin < 3.2 - Stored Cross-Site Scripting in Job Configuration Forms
Jun 16, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-21666 MEDIUM
Jenkins Kiuwan Plugin < 1.6.0 - Reflected Cross-Site Scripting via Form Validation Endpoint
Jun 10, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-21661 MEDIUM
Jenkins Kubernetes CLI Plugin <1.10.0 - Info Disclosure
Jun 10, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21659 HIGH
Jenkins URLTrigger Plugin < 0.48 - XML External Entity Injection
May 25, 2021
CVSS 8.1
EPSS 0.00
CVE-2021-21658 CRITICAL
Jenkins Nuget Plugin < 1.0 - XML External Entity Injection
May 25, 2021
CVSS 9.1
EPSS 0.01
CVE-2021-21657 HIGH
Jenkins Filesystem Trigger Plugin < 0.40 - XML External Entity Injection
May 25, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-21656 HIGH
Jenkins Xcode integration Plugin < 2.0.14 - XML External Entity Injection
May 11, 2021
CVSS 7.1
EPSS 0.00
CVE-2021-21655 HIGH
Jenkins P4 Plugin < 1.11.4 - Cross-Site Request Forgery
May 11, 2021
CVSS 7.1
EPSS 0.00
CVE-2021-21654 MEDIUM
Jenkins P4 Plugin <1.11.4 - Privilege Escalation
May 11, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21653 MEDIUM
Jenkins Xray - Test Management for Jira Plugin <2.4.0 - Info Disclo...
May 11, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21652 HIGH
Jenkins Xray - Test Management for Jira < 2.4.0 - Cross-Site Request Forgery
May 11, 2021
CVSS 7.1
EPSS 0.00
CVE-2021-21651 MEDIUM
Jenkins S3 publisher Plugin <0.11.6 - Info Disclosure
May 11, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21650 MEDIUM
Jenkins S3 publisher Plugin <0.11.6 - Info Disclosure
May 11, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21649 MEDIUM
Jenkins Dashboard View Plugin < 2.15 - Stored Cross-Site Scripting via Image Dashboard Portlet URL
May 11, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-21648 MEDIUM
Jenkins Credentials Plugin < 2.3.18 - Reflected Cross-Site Scripting
May 11, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-21647 MEDIUM
Jenkins CloudBees CD Plugin <1.1.21 - Privilege Escalation
Apr 21, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-21646 HIGH
Jenkins Templating Engine Plugin <2.1 - RCE
Apr 21, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-21645 MEDIUM
Jenkins Config File Provider Plugin <3.7.0 - Info Disclosure
Apr 21, 2021
CVSS 4.3
EPSS 0.00