org.jenkins-ci.main:jenkins-core
Security Advisories for org.jenkins-ci.main:jenkins-core in maven
Moderate
3 months ago
Jenkins is missing a permission check in the authenticated users' profile menu
maven
org.jenkins-ci.main:jenkins-core
Moderate
3 months ago
Jenkins has a missing permission check, allowing users to obtain agent names
maven
org.jenkins-ci.main:jenkins-core
Moderate
3 months ago
Jenkins has a log message injection vulnerability
maven
org.jenkins-ci.main:jenkins-core
Moderate
9 months ago
Jenkins cross-site request forgery (CSRF) vulnerability
maven
org.jenkins-ci.main:jenkins-core
Moderate
9 months ago
Jenkins reveals encrypted values of secrets stored in agent configuration to users with Agent/Extended Read permission
maven
org.jenkins-ci.main:jenkins-core
Moderate
9 months ago
Jenkins reveals encrypted values of secrets stored in agent configuration to users with Agent/Extended Read permission
maven
org.jenkins-ci.main:jenkins-core
Moderate
about 1 year ago
Jenkins exposes multi-line secrets through error messages
maven
org.jenkins-ci.main:jenkins-core
Moderate
about 1 year ago
Jenkins item creation restriction bypass vulnerability
maven
org.jenkins-ci.main:jenkins-core
High
over 1 year ago
Jenkins Remoting library arbitrary file read vulnerability
maven
org.jenkins-ci.main:jenkins-core, org.jenkins-ci.main:remoting
Moderate
over 1 year ago
Jenkins does not perform a permission check in an HTTP endpoint
maven
org.jenkins-ci.main:jenkins-core
High
almost 2 years ago
Cross-site WebSocket hijacking vulnerability in the Jenkins CLI
maven
org.jenkins-ci.main:jenkins-core
Critical
almost 2 years ago
Arbitrary file read vulnerability through the Jenkins CLI can lead to RCE
maven
org.jenkins-ci.main:jenkins-core
High
about 2 years ago
Jenkins temporary plugin file created with insecure permissions
maven
org.jenkins-ci.main:jenkins-core
Moderate
about 2 years ago
Jenkins does not exclude sensitive build variables from search
maven
org.jenkins-ci.main:jenkins-core
Low
about 2 years ago
Jenkins temporary uploaded file created with insecure permissions
maven
org.jenkins-ci.main:jenkins-core
High
about 2 years ago
Jenkins Cross-site Scripting vulnerability
maven
org.jenkins-ci.main:jenkins-core
Low
about 2 years ago
Jenkins temporary uploaded file created with insecure permissions
maven
org.jenkins-ci.main:jenkins-core
High
over 2 years ago
Jenkins Stored Cross-site Scripting vulnerability
maven
org.jenkins-ci.main:jenkins-core
High
over 2 years ago
Jenkins CSRF protection bypass vulnerability
maven
org.jenkins-ci.main:jenkins-core
High
over 2 years ago
Cross-site Scripting vulnerability in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Low
over 2 years ago
Information disclosure through error stack traces related to agents
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 2 years ago
Incorrect Permission Preservation in Jenkins Core
maven
org.jenkins-ci.main:jenkins-core
High
over 2 years ago
Incorrect Authorization in Jenkins Core
maven
org.jenkins-ci.main:jenkins-core
High
about 3 years ago
Jenkins vulnerable to stored cross site scripting in the I:helpIcon component
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Cross-site Scripting vulnerability in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Observable timing discrepancy allows determining username validity in Jenkins
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Cross-site Scripting vulnerability in Jenkins
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Cross-site Scripting vulnerability in Jenkins
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Unauthorized view fragment access in Jenkins
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Cross-site Scripting vulnerability in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper Neutralization of Input During Web Page Generation in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper Neutralization of Input During Web Page Generation in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper Neutralization of Input During Web Page Generation in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Exposure of Sensitive Information to an Unauthorized Actor in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper Neutralization of Input During Web Page Generation in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper Neutralization of Input During Web Page Generation in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Agent-to-controller access control allowed writing to sensitive directory used by Jenkins Pipeline: Shared Groovy Libraries Plugin
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Critical
over 3 years ago
Agent-to-controller access control allows reading/writing most content of build directories in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Path traversal vulnerability on Windows in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper handling of equivalent directory names on Windows in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper permission checks allow canceling queue items and aborting builds in Jenkins
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Session fixation vulnerability in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
View name validation bypass in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Lack of type validation in agent related REST API in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Time-of-check Time-of-use (TOCTOU) Race Condition in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Reflected XSS vulnerability in Jenkins markup formatter preview
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Excessive memory allocation in graph URLs leads to denial of service in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Stored XSS vulnerability in Jenkins on new item page
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Path traversal vulnerability in Jenkins agent names
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Stored XSS vulnerability in Jenkins button labels
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Arbitrary file read vulnerability in workspace browsers in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Arbitrary file existence check in file fingerprints in Jenkins
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Improper handling of REST API XML deserialization errors in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
XSS vulnerability in Jenkins notification bar
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Missing permission check for paths with specific prefix in Jenkins
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Jenkins Cross-Site Scripting vulnerability in help icons
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper Neutralization of Input During Web Page Generation in Jenkins
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Jenkins Cross-site Scripting vulnerability in project naming strategy
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Stored XSS vulnerability in Jenkins 'keep forever' badge icon
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Stored XSS vulnerability in Jenkins console links
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Stored XSS vulnerability in Jenkins job build time trend
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Stored XSS vulnerability in Jenkins upstream cause
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper Neutralization of Input During Web Page Generation in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper Neutralization of Input During Web Page Generation in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper Neutralization of Input During Web Page Generation in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Low
over 3 years ago
Jenkins REST APIs vulnerable to clickjacking
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Memory usage graphs accessible to anyone with Overall/Read
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Jenkins Diagnostic page exposed session cookies
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Jenkins vulnerable to UDP amplification reflection attack
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
Inbound TCP Agent Protocol/3 authentication bypass in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Non-constant time comparison of inbound TCP agent connection secret
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
XML external entity (XXE) vulnerability in Jenkins
maven
org.jenkins-ci.main:jenkins-core
High
over 3 years ago
XML external entity (XXE) vulnerability in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper Neutralization of Input During Web Page Generation in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Improper Limitation of a Pathname to a Restricted Directory in Jenkins
maven
org.jenkins-ci.main:jenkins-core
Low
over 3 years ago
Jenkins allows Cross-Site Scripting (XSS)
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Jenkins allows Remote Attackers to Hijack Sessions
maven
org.jenkins-ci.main:jenkins-core
Moderate
over 3 years ago
Jenkins allows attackers to configure restricted projects
maven
org.jenkins-ci.main:jenkins-core