Where
-Infinity
0

Jenkins Pipeline: Groovy PluginJenkins Pipeline: Groovy Plugin 3990.vd281dd77a_388 and earlier, except 3975.3977.v478dd9e956c3 does…

Risk 33
Severity
7
First published (updated )

maven/org.jenkins-ci.plugins.workflow:workflow-jobXSS

Risk 74
Severity
7.5
First published (updated )

redhat/jenkinsXSS

Risk 36
Severity
5.4
First published (updated )

redhat/jenkinsJenkins Pipeline: Groovy Plugin 2689.v434009a_31b_f1 and earlier allows loading any Groovy source fi…

Risk 75
Severity
8.5
First published (updated )

redhat/jenkinsJenkins Pipeline: Shared Groovy Libraries Plugin 564.ve62a_4eb_b_e039 and earlier, except 2.21.3, al…

Risk 53
Severity
7.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

maven/com.surenpi.jenkins:phoenix-autotestA missing permission check in Jenkins Pipeline: Phoenix AutoTest Plugin 1.3 and earlier allows attac…

Risk 39
Severity
6.5
First published (updated )

maven/com.surenpi.jenkins:phoenix-autotestPath Traversal

Risk 39
Severity
6.5
First published (updated )

Jenkins Pipeline\Path Traversal

Risk 38
Severity
6.5
First published (updated )

Jenkins Pipeline\XEE

Risk 60
Severity
8.1
First published (updated )

redhat/jenkinsA flaw was found in Jenkins. The Pipeline: Shared Groovy Libraries follows symbolic links to locatio…

Risk 39
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat/jenkinsPath Traversal

Risk 39
Severity
6.5
First published (updated )

redhat/jenkinsJenkins Pipeline: Groovy Plugin 2648.va9433432b33c and earlier follows symbolic links to locations o…

Risk 39
Severity
6.5
First published (updated )

redhat/jenkinsJenkins Pipeline: Shared Groovy Libraries Plugin 552.vd9cc05b8a2e1 and earlier uses the names of Pip…

Risk 81
Severity
8.8
First published (updated )

redhat/jenkinsA flaw was found in Jenkins. The Pipeline: Multibranch follows symbolic links to locations outside o…

Risk 39
Severity
6.5
First published (updated )

redhat/jenkinsOS Command Injection

Risk 82
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat/jenkinsInfoleak

Risk 39
Severity
6.5
First published (updated )

redhat/jenkinsJenkins Pipeline: Groovy Plugin 2648.va9433432b33c and earlier includes password parameters from the…

Risk 23
Severity
4.3
First published (updated )

redhat/jenkinsA sandbox bypass vulnerability in Jenkins Pipeline: Shared Groovy Libraries Plugin 552.vd9cc05b8a2e1…

Risk 81
Severity
8.8
First published (updated )

redhat/jenkinsOS Command Injection

Risk 81
Severity
8.8
First published (updated )

redhat/jenkinsOS Command Injection

Risk 81
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat/jenkinsA sandbox bypass vulnerability in Jenkins Pipeline: Shared Groovy Libraries Plugin 552.vd9cc05b8a2e1…

Risk 81
Severity
8.8
First published (updated )

Jenkins Zap Pipeline JenkinsXSS

Risk 34
Severity
5.4
First published (updated )

redhat OpenShift Container PlatformA missing permission check in Jenkins Pipeline: Shared Groovy Libraries Plugin 2.14 and earlier allo…

Risk 23
Severity
4.3
First published (updated )

maven/org.jenkins-ci.plugins.workflow:workflow-cpsA sandbox bypass vulnerability in Jenkins Pipeline: Groovy Plugin 2.64 and earlier allows attackers …

Risk 88
Severity
9.8
First published (updated )

maven/org.jenkins-ci.plugins:script-securityA sandbox bypass vulnerability exists in Pipeline: Groovy Plugin 2.61 and earlier in src/main/java/o…

Risk 80
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

maven/org.jenkinsci.plugins:pipeline-model-definitionA sandbox bypass vulnerability exists in Pipeline: Declarative Plugin 1.3.3 and earlier in pipeline-…

Risk 80
Severity
8.8
First published (updated )

Jenkins Pipeline\A sandbox bypass vulnerability exists in Pipeline: Groovy Plugin 2.59 and earlier in groovy-sandbox/…

Risk 79
Severity
8.8
First published (updated )

maven/org.jenkins-ci.plugins.workflow:workflow-durable-task-stepOn Jenkins instances with Authorize Project plugin, the authentication associated with a build may l…

Risk 32
Severity
4.9
First published (updated )

maven/org.jenkins-ci.plugins:pipeline-build-stepBuilds in Jenkins are associated with an authentication that controls the permissions that the build…

Risk 28
Severity
5.3
First published (updated )

maven/org.jenkins-ci.plugins.workflow:workflow-cpsArbitrary code execution due to incomplete sandbox protection: Constructors, instance variable initi…

Risk 82
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203