Package impact

java Maven / org.jenkins-ci.main:jenkins-core

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2017-1000362 critical 9.8 9.8 9y ago Exposure of Sensitive Information to an Unauthorized Actor in Jenkins java
CVE-2016-9299 critical 9.8 9.8 10y ago Improper Neutralization of Special Elements used in an LDAP Query in Jenkins fedorajava
CVE-2016-0791 critical 9.8 9.8 10y ago Exposure of Sensitive Information in Jenkins Core java
CVE-2016-0788 critical 9.8 9.8 10y ago Jenkins allows Execution of Code by Opening a JRMP Listener java
CVE-2021-21686 critical 9.5 4y ago Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins archjava
CVE-2021-21685 critical 9.5 4y ago Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins archjava
CVE-2021-21692 critical 9.5 4y ago Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins archjava
CVE-2021-21691 critical 9.5 4y ago Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins archjava
CVE-2021-21694 critical 9.5 4y ago Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins archjava
CVE-2021-21689 critical 9.5 4y ago Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins archjava
CVE-2021-21688 critical 9.5 4y ago Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins archjava
CVE-2021-21687 critical 9.5 4y ago Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins archjava
CVE-2021-21693 critical 9.5 4y ago Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins archjava
CVE-2021-21690 critical 9.5 4y ago Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins archjava
CVE-2021-21695 critical 9.5 4y ago Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins archjava
CVE-2021-21697 critical 9.5 4y ago Agent-to-controller access control allows reading/writing most content of build directories in Jenkins archjava
CVE-2021-21696 critical 9.5 4y ago Agent-to-controller access control allowed writing to sensitive directory used by Jenkins Pipeline: Shared Groovy Libraries Plugin archjava
CVE-2016-0792 high 8.8 8.8 10y ago Jenkins allows Deserialization of Untrusted Data via an XML File java
CVE-2015-7538 high 8.8 8.8 11y ago Jenkins Vulnerable to Cross-Site Request Forgery (CSRF) Attack java
CVE-2015-7537 high 8.8 8.8 11y ago Jenkins Vulnerable to Cross-Site Request Forgery (CSRF) Attack java
CVE-2021-21670 high 8.0 4y ago Improper permission checks allow canceling queue items and aborting builds in Jenkins archjava
CVE-2021-21671 high 8.0 4y ago Session fixation vulnerability in Jenkins archjava
CVE-2021-21607 high 8.0 4y ago Excessive memory allocation in graph URLs leads to denial of service in Jenkins archjava
CVE-2021-21611 high 8.0 4y ago Stored XSS vulnerability in Jenkins on new item page archjava
CVE-2021-21605 high 8.0 4y ago Path traversal vulnerability in Jenkins agent names archjava
CVE-2021-21610 high 8.0 4y ago Reflected XSS vulnerability in Jenkins markup formatter preview archjava
CVE-2021-21606 high 8.0 4y ago Arbitrary file existence check in file fingerprints in Jenkins archjava
CVE-2021-21602 high 8.0 4y ago Arbitrary file read vulnerability in workspace browsers in Jenkins archjava
CVE-2021-21603 high 8.0 4y ago XSS vulnerability in Jenkins notification bar archjava
CVE-2021-21604 high 8.0 4y ago Improper handling of REST API XML deserialization errors in Jenkins archjava
CVE-2021-21608 high 8.0 4y ago Stored XSS vulnerability in Jenkins button labels archjava
CVE-2021-21609 high 8.0 4y ago Missing permission check for paths with specific prefix in Jenkins archjava
CVE-2019-10352 high 8.0 4y ago Improper Limitation of a Pathname to a Restricted Directory in Jenkins archjava
CVE-2019-10354 high 8.0 4y ago Missing Authorization in Jenkins archjava
CVE-2019-10353 high 8.0 4y ago Cross-Site Request Forgery in Jenkins archjava
CVE-2017-1000355 high 8.0 4y ago Deserialization of Untrusted Data in Jenkins archjava
CVE-2017-1000356 high 8.0 4y ago Cross-Site Request Forgery in Jenkins archjava
CVE-2017-1000354 high 8.0 4y ago Improper Authentication in Jenkins archjava
CVE-2018-1999006 high 8.0 4y ago Exposure of Sensitive Information to an Unauthorized Actor in Jenkins archjava
CVE-2018-1999002 high 8.0 4y ago Improper Input Validation in Jenkins archjava
CVE-2018-1999004 high 8.0 4y ago Incorrect Authorization in Jenkins archjava
CVE-2018-1999007 high 8.0 4y ago Cross-site scripting vulnerability exists in Jenkins and Stapler Plugin archjava
CVE-2018-1999005 high 8.0 4y ago Improper Neutralization of Input During Web Page Generation in Jenkins archjava
CVE-2018-1999001 high 8.0 4y ago Improper Input Validation in Jenkins archjava
CVE-2018-1999003 high 8.0 4y ago Incorrect Authorization in Jenkins archjava
CVE-2015-7539 high 7.5 7.5 11y ago Jenkins does not Verify Checksums for Plugin Files java
CVE-2015-5325 high 7.5 11y ago Jenkins allows Bypass of Access Restrictions java
CVE-2015-1814 high 7.5 11y ago Jenkins allows for Privilege Escalation by Remote Authenticated Users java
CVE-2014-2063 high 7.5 12y ago Jenkins Vulnerable to Clickjacking java
CVE-2014-3666 high 7.5 12y ago Jenkins allows for Code Execution via Crafted Packet to the CLI java
CVE-2013-0329 high 7.5 13y ago Jenkins Cross-Site Request Forgery vulnerability java
CVE-2016-3726 high 7.4 7.4 10y ago Jenkins affected by Open Redirect Vulnerability java