org.jenkins-ci.plugins

1,024 tracked vulnerabilities.

CVE-2023-4301 MEDIUM
Jenkins Fortify Plugin <22.1.38 - CSRF
Aug 21, 2023
CVSS 4.2
EPSS 0.00
CVE-2023-40351 MEDIUM
Jenkins Favorite View Plugin < 5.v77a_37f62782d - Cross-Site Request Forgery
Aug 16, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-40350 MEDIUM
Jenkins Docker Swarm Plugin < 1.11 - Stored Cross-Site Scripting via Docker Response Handling
Aug 16, 2023
CVSS 5.4
EPSS 0.03
CVE-2023-40349 MEDIUM
Jenkins Gogs Plugin < 1.0.15 - Unauthenticated Build Trigger via Improper Webhook Initialization
Aug 16, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-40348 MEDIUM
Jenkins Gogs Plugin < 1.0.15 - Unauthenticated Job Existence Exposure via Webhook Endpoint
Aug 16, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-40347 MEDIUM
Jenkins Maven Artifact ChoiceListProvider (Nexus) Plugin < 1.14 - Insufficiently Protected Credentials
Aug 16, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-40345 MEDIUM
Jenkins Delphix Plugin < 3.0.2 - Insufficiently Protected Credentials via Credentials Lookup
Aug 16, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-40344 MEDIUM
Jenkins Delphix Plugin < 3.0.2 - Credential ID Enumeration via Missing Permission Check
Aug 16, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-40342 MEDIUM
Jenkins Flaky Test Handler Plugin < 1.2.2 - Stored Cross-Site Scripting via JUnit Test Contents
Aug 16, 2023
CVSS 5.4
EPSS 0.06
CVE-2023-40340 HIGH
Jenkins NodeJS Plugin <1.6.0 - Info Disclosure
Aug 16, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-40339 HIGH
Jenkins Config File Provider Plugin <va_544a_6234b_46 - Info Disclo...
Aug 16, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-40338 MEDIUM
Jenkins Folders Plugin < 6.846.v23698686f0f6 - Information Exposure via Scan Organization Folder Log Error Message
Aug 16, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-40337 MEDIUM
Jenkins Folders Plugin < 6.846.v23698686f0f6 - Cross-Site Request Forgery
Aug 16, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-40336 HIGH
Jenkins Folders Plugin < 6.846.v23698686f0f6 - Cross-Site Request Forgery
Aug 16, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-39156 MEDIUM
Jenkins Bazaar Plugin < 1.22 - Cross-Site Request Forgery via SCM Tag Deletion
Jul 26, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-39155 MEDIUM
Jenkins Chef Identity Plugin <2.0.3 - Info Disclosure
Jul 26, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-39153 MEDIUM
Jenkins GitLab Auth Plugin <1.17.1 - CSRF
Jul 26, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-39152 MEDIUM
Jenkins Gradle Plugin 2.8 - Info Disclosure
Jul 26, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-32263 LOW
Micro Focus Dimensions CM Plugin for Jenkins - Info Disclosure
Jul 19, 2023
CVSS 2.6
EPSS 0.00
CVE-2023-32262 MEDIUM
Micro Focus Dimensions CM Plugin - Privilege Escalation
Jul 19, 2023
CVSS 4.3
EPSS 0.01
CVE-2023-32261 MEDIUM
Micro Focus Dimensions CM Plugin for Jenkins < 0.9.3.1 - Credential ID Enumeration via Overall/Read Permission
Jul 19, 2023
CVSS 4.2
EPSS 0.00
CVE-2023-37965 HIGH
Jenkins ElasticBox CI Plugin < 5.0.1 - Missing Authorization
Jul 12, 2023
CVSS 7.1
EPSS 0.00
CVE-2023-37964 HIGH
Jenkins ElasticBox CI Plugin < 5.0.1 - Cross-Site Request Forgery
Jul 12, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-37961 HIGH
Jenkins Assembla Auth Plugin < 1.14 - Cross-Site Request Forgery
Jul 12, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-37959 MEDIUM
Jenkins Sumologic Publisher Plugin < 2.2.1 - Missing Authorization
Jul 12, 2023
CVSS 6.5
EPSS 0.00