Known vulnerabilities in Microsoft Entra ID
Vendor:
Jenkins
Software:
Microsoft Entra ID
Software CPE:
cpe:2.3:a:jenkins:azure_ad:*:*:*:*:*:jenkins:*:*
Website:
https://jenkins.io/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU129388 - URL Redirection to Untrusted Site ('Open Redirect') CVE-2026-42525 |
CWE-601 | Medium | 667.v4c5827a_e74a_0 | 04.05.2026 |
SB2026050412 |
||
| #VU80529 - Exposure of sensitive information to an unauthorized actor CVE-2023-41935 |
CWE-200 | Low | 397.v907382dd9b_98 | 07.09.2023 |
SB2023090739 |
||
| #VU71516 - Session Fixation CVE-2023-24426 |
CWE-384 | High | 306.va_7083923fd50 | 25.01.2023 |
SB2023012514 |
||
| #VU56229 - Cross-Site Request Forgery (CSRF) CVE-2021-21679 |
CWE-352 | Low | 180.v8b1e80e6f242 | 01.09.2021 |
SB2021090106 |
||
| #VU25290 - Cleartext Transmission of Sensitive Information CVE-2020-2119 |
CWE-319 | Low | 1.2.0 | 13.02.2020 |
SB2020021310 |