org.jenkins-ci.plugins

1,024 tracked vulnerabilities.

CVE-2020-2209 MEDIUM
Jenkins TestComplete support Plugin <2.4.1 - Info Disclosure
Jul 02, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2208 MEDIUM
Jenkins Slack Upload Plugin <1.7 - Info Disclosure
Jul 02, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2207 MEDIUM
Jenkins VncViewer Plugin <1.7 - XSS
Jul 02, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2206 MEDIUM
Jenkins VncRecorder Plugin <1.25 - XSS
Jul 02, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-2205 MEDIUM
Jenkins VncRecorder Plugin <1.25 - XSS
Jul 02, 2020
CVSS 4.8
EPSS 0.00
CVE-2020-2204 MEDIUM
Jenkins Fortify on Demand Plugin <5.0.1 - Privilege Escalation
Jul 02, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-2203 MEDIUM
Jenkins Fortify on Demand Plugin <5.0.1 - CSRF
Jul 02, 2020
CVSS 4.3
EPSS 0.01
CVE-2020-2202 MEDIUM
Jenkins Fortify on Demand Plugin <6.0.0 - Info Disclosure
Jul 02, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2201 MEDIUM
Jenkins Sonargraph Integration Plugin <3.0.0 - XSS
Jul 02, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-2200 HIGH
Jenkins Play Framework Plugin <1.0.2 - Command Injection
Jun 03, 2020
CVSS 8.8
EPSS 0.03
CVE-2020-2199 MEDIUM
Jenkins Subversion Partial Release Manager Plugin < 1.0.1 - Reflected Cross-Site Scripting via Repository URL Field
Jun 03, 2020
CVSS 6.1
EPSS 0.22
CVE-2020-2196 HIGH
Jenkins Selenium Plugin < 3.141.59 - Cross-Site Request Forgery
Jun 03, 2020
CVSS 8.0
EPSS 0.00
CVE-2020-2195 MEDIUM
Jenkins Compact Columns Plugin <= 1.11 - Stored Cross-Site Scripting in Job Description Tooltips
Jun 03, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-2192 MEDIUM
Jenkins Self-Organizing Swarm Modules Plugin < 3.20 - Cross-Site Request Forgery
Jun 03, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-2191 MEDIUM
Jenkins Self-Organizing Swarm Modules Plugin < 3.20 - Unauthenticated Agent Label Manipulation via API Endpoints
Jun 03, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2190 MEDIUM
Jenkins Script Security Plugin <= 1.72 - Stored Cross-Site Scripting in In-process Script Approval Page
Jun 03, 2020
CVSS 5.4
EPSS 0.00
CVE-2020-2188 MEDIUM
Jenkins Amazon EC2 Plugin < 1.50.1 - Unauthenticated Credential ID Enumeration via Form Methods
May 06, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2187 MEDIUM
Jenkins Amazon EC2 Plugin < 1.50.1 - Improper Certificate Validation
May 06, 2020
CVSS 5.6
EPSS 0.00
CVE-2020-2186 MEDIUM
Jenkins Amazon EC2 Plugin < 1.50.1 - Cross-Site Request Forgery
May 06, 2020
CVSS 4.3
EPSS 0.01
CVE-2020-2185 MEDIUM
Jenkins Amazon EC2 Plugin <1.50.1 - Man-in-the-middle
May 06, 2020
CVSS 5.6
EPSS 0.00
CVE-2020-2184 MEDIUM
Jenkins CVS Plugin < 2.16 - Cross-Site Request Forgery
May 06, 2020
CVSS 4.3
EPSS 0.01
CVE-2020-2183 MEDIUM
Jenkins Copy Artifact Plugin < 1.43.1 - Unauthenticated Artifact Access via Improper Permission Checks
May 06, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-2182 MEDIUM
Jenkins Credentials Binding Plugin < 1.22 - Insufficiently Protected Credentials
May 06, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-2181 MEDIUM
Jenkins Credentials Binding Plugin < 1.22 - Insufficiently Protected Credentials in Build Log
May 06, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-2179 HIGH
Jenkins Yaml Axis Plugin <= 0.2.0 - Remote Code Execution via Unsafe YAML Deserialization
Apr 16, 2020
CVSS 8.8
EPSS 0.01