Filter
AND
-Infinity
0

Jenkins Cluster StatisticsCSRF

First published (updated )

JenkinsA missing permission check in Jenkins loader.io Plugin 1.0.1 and earlier allows attackers with Overa…

First published (updated )

maven/com.cloudbees.jenkins.plugins:xpdevA missing permission check in Jenkins XP-Dev Plugin 1.0 and earlier allows unauthenticated attackers…

First published (updated )

Jenkins ViolationsXEE

First published (updated )

maven/org.jenkins-ci.main:reverse-proxy-auth-pluginJenkins Reverse Proxy Auth Plugin 1.7.3 and earlier stores the LDAP manager password unencrypted in …

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

maven/org.jenkins-ci.plugins:delete-log-pluginA missing permission check in Jenkins Delete log Plugin 1.0 and earlier allows attackers with Item/R…

First published (updated )

maven/org.jenkins-ci.plugins:delete-log-pluginCSRF

First published (updated )

maven/io.jenkins.plugins:cavisson-ns-nd-integrationJenkins NS-ND Integration Performance Publisher Plugin 4.8.0.143 and earlier stores passwords unencr…

First published (updated )

Jenkins Cluster StatisticsCSRF

First published (updated )

Jenkins Support CoreAn incorrect permission check in Jenkins Support Core Plugin 1206.v14049fa_b_d860 and earlier allows…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jenkins NaginatorXSS

First published (updated )

Jenkins LTSA missing permission check in Jenkins 2.503 and earlier, LTS 2.492.2 and earlier allows attackers wi…

EPSS
0.03%
First published (updated )

Jenkins LTSA missing permission check in Jenkins 2.503 and earlier, LTS 2.492.2 and earlier allows attackers wi…

EPSS
0.03%
First published (updated )

Jenkins Spring ConfigXSS

First published (updated )

maven/org.jenkins-ci.plugins:sonar-gerritCSRF

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jenkins Custom Build PropertiesXSS

First published (updated )

Jenkins CheckmarxXSS

First published (updated )

JenkinsJenkins Google Login Plugin 1.4 through 1.6 (both inclusive) improperly determines that a redirect U…

First published (updated )

maven/com.tupilabs.image_gallery:image-galleryPath Traversal

First published (updated )

Jenkins Build Failure Analyzer PluginXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jenkins Extra ColumnsXSS

First published (updated )

Jenkins Stack HammerJenkins Stack Hammer Plugin 1.0.6 and earlier stores Stack Hammer API keys unencrypted in job config…

EPSS
0.03%
First published (updated )

Jenkins Simple QueueCSRF

EPSS
0.02%
First published (updated )

Cadence vManager PluginJenkins Cadence vManager Plugin 4.0.0-282.v5096a_c2db_275 and earlier stores Verisium Manager vAPI k…

EPSS
0.03%
First published (updated )

Jenkins Monitor Remote JobJenkins monitor-remote-job Plugin 1.0 stores passwords unencrypted in job config.xml files on the Je…

EPSS
0.03%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JenkinsJenkins AsakusaSatellite Plugin 0.1.1 and earlier stores AsakusaSatellite API keys unencrypted in jo…

EPSS
0.03%
First published (updated )

JenkinsJenkins AsakusaSatellite Plugin 0.1.1 and earlier does not mask AsakusaSatellite API keys displayed …

EPSS
0.03%
First published (updated )

maven/org.jenkins-ci.main:jenkins-corePath Traversal

First published (updated )

Jenkins Kubernetes Credentials ProviderJenkins Kubernetes Credentials Provider Plugin 1.208.v128ee9800c04 and earlier does not set the appr…

First published (updated )

Jenkins Bitbucket OAuthCSRF

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203