org.jenkins-ci.plugins
1,024 tracked vulnerabilities.
CVE-2020-2209
MEDIUM
Jenkins TestComplete support Plugin <2.4.1 - Info Disclosure
Jul 02, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2208
MEDIUM
Jenkins Slack Upload Plugin <1.7 - Info Disclosure
Jul 02, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2207
MEDIUM
Jenkins VncViewer Plugin <1.7 - XSS
Jul 02, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2206
MEDIUM
Jenkins VncRecorder Plugin <1.25 - XSS
Jul 02, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2205
MEDIUM
Jenkins VncRecorder Plugin <1.25 - XSS
Jul 02, 2020
CVSS 4.8
EPSS 0.00
CVE-2020-2204
MEDIUM
Jenkins Fortify on Demand Plugin <5.0.1 - Privilege Escalation
Jul 02, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-2203
MEDIUM
Jenkins Fortify on Demand Plugin <5.0.1 - CSRF
Jul 02, 2020
CVSS 4.3
EPSS 0.01
CVE-2020-2202
MEDIUM
Jenkins Fortify on Demand Plugin <6.0.0 - Info Disclosure
Jul 02, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2201
MEDIUM
Jenkins Sonargraph Integration Plugin <3.0.0 - XSS
Jul 02, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-2200
HIGH
Jenkins Play Framework Plugin <1.0.2 - Command Injection
Jun 03, 2020
CVSS 8.8
EPSS 0.03
CVE-2020-2199
MEDIUM
Jenkins Subversion Partial Release Manager Plugin < 1.0.1 - Reflected Cross-Site Scripting via Repository URL Field
Jun 03, 2020
CVSS 6.1
EPSS 0.22
CVE-2020-2196
HIGH
Jenkins Selenium Plugin < 3.141.59 - Cross-Site Request Forgery
Jun 03, 2020
CVSS 8.0
EPSS 0.00
CVE-2020-2195
MEDIUM
Jenkins Compact Columns Plugin <= 1.11 - Stored Cross-Site Scripting in Job Description Tooltips
Jun 03, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-2192
MEDIUM
Jenkins Self-Organizing Swarm Modules Plugin < 3.20 - Cross-Site Request Forgery
Jun 03, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-2191
MEDIUM
Jenkins Self-Organizing Swarm Modules Plugin < 3.20 - Unauthenticated Agent Label Manipulation via API Endpoints
Jun 03, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2190
MEDIUM
Jenkins Script Security Plugin <= 1.72 - Stored Cross-Site Scripting in In-process Script Approval Page
Jun 03, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-2188
MEDIUM
Jenkins Amazon EC2 Plugin < 1.50.1 - Unauthenticated Credential ID Enumeration via Form Methods
May 06, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2187
MEDIUM
Jenkins Amazon EC2 Plugin < 1.50.1 - Improper Certificate Validation
May 06, 2020
CVSS 5.6
EPSS 0.00
CVE-2020-2186
MEDIUM
Jenkins Amazon EC2 Plugin < 1.50.1 - Cross-Site Request Forgery
May 06, 2020
CVSS 4.3
EPSS 0.01
CVE-2020-2185
MEDIUM
Jenkins Amazon EC2 Plugin <1.50.1 - Man-in-the-middle
May 06, 2020
CVSS 5.6
EPSS 0.00
CVE-2020-2184
MEDIUM
Jenkins CVS Plugin < 2.16 - Cross-Site Request Forgery
May 06, 2020
CVSS 4.3
EPSS 0.01
CVE-2020-2183
MEDIUM
Jenkins Copy Artifact Plugin < 1.43.1 - Unauthenticated Artifact Access via Improper Permission Checks
May 06, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-2182
MEDIUM
Jenkins Credentials Binding Plugin < 1.22 - Insufficiently Protected Credentials
May 06, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2181
MEDIUM
Jenkins Credentials Binding Plugin < 1.22 - Insufficiently Protected Credentials in Build Log
May 06, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-2179
HIGH
Jenkins Yaml Axis Plugin <= 0.2.0 - Remote Code Execution via Unsafe YAML Deserialization
Apr 16, 2020
CVSS 8.8
EPSS 0.01
Products
script-security 35
git 13
email-ext 11
active-directory 9
config-file-provider 9
electricflow 9
ec2 8
oic-auth 8
subversion 8
artifactory 7
credentials-binding 7
htmlpublisher 7
jobConfigHistory 7
mercurial 7
openshift-deployer 7
rundeck 7
azure-ad 6
azure-vm-agents 6
ec2-deployment-dashboard 6
fortify-on-demand-uploader 6
ghprb 6
gitlab-oauth 6
gitlab-plugin 6
pipeline-maven 6
repository-connector 6
aws-codecommit-trigger 5
codedx 5
credentials 5
delphix 5
extended-choice-parameter 5
Quick Filters