Cloudbees / Jenkins
9 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2012-0785 | Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by CloudBees 1.424.x before 1.424.2.1 and 1.400… | HIGH | 7.5 | Feb 24, 2020 |
| CVE-2015-1811 | jenkins: External entity processing in XML can reveal sensitive local files (SECURITY-167) | HIGH | 7.5 | Jan 15, 2020 |
| CVE-2015-1809 | jenkins: external entity injection via XPath (SECURITY-165) | HIGH | 7.5 | Jan 15, 2020 |
| CVE-2013-2034 | Jenkins: Multiple CSRF in MavenAbstractArtifactRecord.doRedeploy and Jenkins.doEval | MEDIUM | 6.8 | May 14, 2014 |
| CVE-2013-2033 | Jenkins: Build Description XSS | LOW | 2.1 | Apr 10, 2014 |
| CVE-2013-0158 | jenkins: remote unauthenticated retrieval of master cryptographic key (Jenkins Security Advisory 2013-01-04) | LOW | 2.6 | Feb 24, 2013 |
| CVE-2012-6074 | Jenkins: cross-site scripting vulnerability | LOW | 2.3 | Feb 24, 2013 |
| CVE-2012-6073 | Jenkins: open redirect | LOW | 2.1 | Feb 24, 2013 |
| CVE-2012-6072 | Jenkins: HTTP response splitting | MEDIUM | 6.3 | Feb 24, 2013 |
| CVE-2012-0325 | Cross-site scripting (XSS) vulnerability in Jenkins before 1.454, Jenkins LTS before 1.424.5, and Jenkins Enterprise 1.400.x before 1.400.0.13 and 1.424.x befo… | LOW | 2.1 | Mar 9, 2012 |
| CVE-2012-0324 | Cross-site scripting (XSS) vulnerability in Jenkins before 1.454, Jenkins LTS before 1.424.5, and Jenkins Enterprise 1.400.x before 1.400.0.13 and 1.424.x befo… | LOW | 2.3 | Mar 9, 2012 |
Showing 1 to 9 of 9 CVEs