Jenkins / Support Core
5 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2022-45383 | An incorrect permission check in Jenkins Support Core Plugin 1206.v14049fa_b_d860 and earlier allows attackers with Support/DownloadBundle permission to downlo… | MEDIUM | 6.5 | Nov 15, 2022 |
| CVE-2022-25187 | Jenkins Support Core Plugin 2.79 and earlier does not redact some sensitive information in the support bundle. | MEDIUM | 6.5 | Feb 15, 2022 |
| CVE-2021-21621 | Jenkins Support Core Plugin 2.72 and earlier provides the serialized user authentication as part of the "About user (basic authentication details only)" inform… | MEDIUM | 5.3 | Feb 24, 2021 |
| CVE-2019-16540 | A path traversal vulnerability in Jenkins Support Core Plugin 2.63 and earlier allows attackers with Overall/Read permission to delete arbitrary files on the J… | MEDIUM | 6.5 | Nov 21, 2019 |
| CVE-2019-16539 | A missing permission check in Jenkins Support Core Plugin 2.63 and earlier allows attackers with Overall/Read permission to delete support bundles. | MEDIUM | 6.5 | Nov 21, 2019 |
Showing 1 to 5 of 5 CVEs