org.jenkins-ci.plugins
1,024 tracked vulnerabilities.
CVE-2025-47885
HIGH
Jenkins Health Advisor by CloudBees < 374.v194b_d4f0c8c8 - Stored Cross-Site Scripting via Server Response
May 14, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-31726
MEDIUM
Jenkins Stack Hammer Plugin <1.0.6 - Info Disclosure
Apr 02, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-31724
MEDIUM
Jenkins Cadence vManager Plugin <4.0.0-282.v5096a_c2db_275 - Info D...
Apr 02, 2025
CVSS 4.3
EPSS 0.01
CVE-2025-31722
HIGH
Jenkins Templating Engine Plugin <2.5.3 - RCE
Apr 02, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-30196
MEDIUM
Jenkins AnchorChain Plugin 1.0 - XSS
Mar 19, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-24403
MEDIUM
Jenkins Azure Service Fabric Plugin < 1.6 - Missing Authorization for Azure Credential ID Enumeration
Jan 22, 2025
CVSS 4.3
EPSS 0.01
CVE-2025-24402
MEDIUM
Jenkins Azure Service Fabric Plugin < 1.6 - Cross-Site Request Forgery
Jan 22, 2025
CVSS 4.3
EPSS 0.01
CVE-2025-24399
HIGH
Jenkins Openid Connect Authentication - Incorrect Default Permissions
Jan 22, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-24397
MEDIUM
Jenkins GitLab Plugin < 1.9.6 - Incorrect Authorization via Global Item/Configure Permission
Jan 22, 2025
CVSS 4.3
EPSS 0.01
CVE-2024-52553
HIGH
Jenkins OpenId Connect Authentication Plugin < 4.421.v5422614eb_e0a - Insufficient Session Expiration
Nov 13, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-52552
HIGH
Jenkins Authorize Project Plugin < 1.7.2 - Stored Cross-Site Scripting via Job Name Evaluation
Nov 13, 2024
CVSS 8.0
EPSS 0.04
CVE-2024-52549
MEDIUM
Jenkins Script Security Plugin - Missing Authorization for File Existence Check
Nov 13, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-47807
HIGH
Jenkins OpenId Connect Authentication Plugin <4.354.321ce67a-1de8 -...
Oct 02, 2024
CVSS 8.1
EPSS 0.00
CVE-2024-47806
HIGH
Jenkins OpenId Connect Authentication Plugin <4.354.v321ce67a_1de8 ...
Oct 02, 2024
CVSS 8.1
EPSS 0.00
CVE-2024-47805
HIGH
Jenkins Credentials Plugin <1380.va - Info Disclosure
Oct 02, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-39460
MEDIUM
Jenkins Bitbucket Branch Source Plugin <= 886.v44cf5e4ecec5 - Sensitive Information Exposure in Build Log
Jun 26, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-39459
MEDIUM
Jenkins Plain Credentials Plugin <182.v468b_97b_9dcb_8 - Info Discl...
Jun 26, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-39458
LOW
Jenkins Structs < 337.v1b_04ea_4df7c8 - Sensitive Information Exposure in Build Step Error Logs
Jun 26, 2024
CVSS 3.1
EPSS 0.00
CVE-2024-5273
MEDIUM
Jenkins Report Info Plugin < 1.2 - Path Traversal via Workspace Directory
May 24, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-34148
MEDIUM
Jenkins Subversion Partial Release Manager Plugin <1.0.1 - RCE
May 02, 2024
CVSS 6.8
EPSS 0.01
CVE-2024-34147
MEDIUM
Jenkins Telegram Bot Plugin <1.4.0 - Info Disclosure
May 02, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-34146
MEDIUM
Jenkins Git server Plugin <114.v068a_c7cc2574 - Privilege Escalation
May 02, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-34145
HIGH
Jenkins Script Security Plugin <1335.vf07d9ce377a_e - RCE
May 02, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-34144
CRITICAL
Jenkins Script Security Plugin <=1335.vf07d9ce377a_e - Sandbox Bypass
May 02, 2024
CVSS 9.8
EPSS 0.56
CVE-2024-2216
HIGH
Jenkins docker-build-step Plugin <2.11 - Privilege Escalation
Mar 06, 2024
CVSS 8.8
EPSS 0.00
Products
script-security 35
git 13
email-ext 11
active-directory 9
config-file-provider 9
electricflow 9
ec2 8
oic-auth 8
subversion 8
artifactory 7
credentials-binding 7
htmlpublisher 7
jobConfigHistory 7
mercurial 7
openshift-deployer 7
rundeck 7
azure-ad 6
azure-vm-agents 6
ec2-deployment-dashboard 6
fortify-on-demand-uploader 6
ghprb 6
gitlab-oauth 6
gitlab-plugin 6
pipeline-maven 6
repository-connector 6
aws-codecommit-trigger 5
codedx 5
credentials 5
delphix 5
extended-choice-parameter 5
Quick Filters