org.jenkins-ci.plugins

1,024 tracked vulnerabilities.

CVE-2025-47885 HIGH
Jenkins Health Advisor by CloudBees < 374.v194b_d4f0c8c8 - Stored Cross-Site Scripting via Server Response
May 14, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-31726 MEDIUM
Jenkins Stack Hammer Plugin <1.0.6 - Info Disclosure
Apr 02, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-31724 MEDIUM
Jenkins Cadence vManager Plugin <4.0.0-282.v5096a_c2db_275 - Info D...
Apr 02, 2025
CVSS 4.3
EPSS 0.01
CVE-2025-31722 HIGH
Jenkins Templating Engine Plugin <2.5.3 - RCE
Apr 02, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-30196 MEDIUM
Jenkins AnchorChain Plugin 1.0 - XSS
Mar 19, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-24403 MEDIUM
Jenkins Azure Service Fabric Plugin < 1.6 - Missing Authorization for Azure Credential ID Enumeration
Jan 22, 2025
CVSS 4.3
EPSS 0.01
CVE-2025-24402 MEDIUM
Jenkins Azure Service Fabric Plugin < 1.6 - Cross-Site Request Forgery
Jan 22, 2025
CVSS 4.3
EPSS 0.01
CVE-2025-24399 HIGH
Jenkins Openid Connect Authentication - Incorrect Default Permissions
Jan 22, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-24397 MEDIUM
Jenkins GitLab Plugin < 1.9.6 - Incorrect Authorization via Global Item/Configure Permission
Jan 22, 2025
CVSS 4.3
EPSS 0.01
CVE-2024-52553 HIGH
Jenkins OpenId Connect Authentication Plugin < 4.421.v5422614eb_e0a - Insufficient Session Expiration
Nov 13, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-52552 HIGH
Jenkins Authorize Project Plugin < 1.7.2 - Stored Cross-Site Scripting via Job Name Evaluation
Nov 13, 2024
CVSS 8.0
EPSS 0.04
CVE-2024-52549 MEDIUM
Jenkins Script Security Plugin - Missing Authorization for File Existence Check
Nov 13, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-47807 HIGH
Jenkins OpenId Connect Authentication Plugin <4.354.321ce67a-1de8 -...
Oct 02, 2024
CVSS 8.1
EPSS 0.00
CVE-2024-47806 HIGH
Jenkins OpenId Connect Authentication Plugin <4.354.v321ce67a_1de8 ...
Oct 02, 2024
CVSS 8.1
EPSS 0.00
CVE-2024-47805 HIGH
Jenkins Credentials Plugin <1380.va - Info Disclosure
Oct 02, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-39460 MEDIUM
Jenkins Bitbucket Branch Source Plugin <= 886.v44cf5e4ecec5 - Sensitive Information Exposure in Build Log
Jun 26, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-39459 MEDIUM
Jenkins Plain Credentials Plugin <182.v468b_97b_9dcb_8 - Info Discl...
Jun 26, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-39458 LOW
Jenkins Structs < 337.v1b_04ea_4df7c8 - Sensitive Information Exposure in Build Step Error Logs
Jun 26, 2024
CVSS 3.1
EPSS 0.00
CVE-2024-5273 MEDIUM
Jenkins Report Info Plugin < 1.2 - Path Traversal via Workspace Directory
May 24, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-34148 MEDIUM
Jenkins Subversion Partial Release Manager Plugin <1.0.1 - RCE
May 02, 2024
CVSS 6.8
EPSS 0.01
CVE-2024-34147 MEDIUM
Jenkins Telegram Bot Plugin <1.4.0 - Info Disclosure
May 02, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-34146 MEDIUM
Jenkins Git server Plugin <114.v068a_c7cc2574 - Privilege Escalation
May 02, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-34145 HIGH
Jenkins Script Security Plugin <1335.vf07d9ce377a_e - RCE
May 02, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-34144 CRITICAL
Jenkins Script Security Plugin <=1335.vf07d9ce377a_e - Sandbox Bypass
May 02, 2024
CVSS 9.8
EPSS 0.56
CVE-2024-2216 HIGH
Jenkins docker-build-step Plugin <2.11 - Privilege Escalation
Mar 06, 2024
CVSS 8.8
EPSS 0.00