Known vulnerabilities in Configuration as Code
Vendor:
Jenkins
Software:
Configuration as Code
Software CPE:
cpe:2.3:a:jenkins:configuration_as_code:*:*:*:*:*:jenkins:*:*
Website:
https://jenkins.io/
Total vulnerabilities:
7
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.4
Breakdown by Severity Chart
1.55.1
1.54.1
1.53.1
1.47.1
1.55
1.54
1.53
1.52
1.51
1.50
1.49
1.48
1.47
1.46
1.45
1.44
1.43
1.42
1.41
1.40
1.39
1.38
1.37
1.36.2
1.36.1
1.36
1.35
1.34
1.33
1.32
1.31
1.30
1.29
1.28
1.27
1.26
1.25
1.24
1.23.1
1.23
1.22
1.21
1.20
1.19
1.18
1.17
1.16
1.15
1.14
1.13
1.12
1.11
1.10
1.9
1.8
1.7
1.6
1.5
1.4
1.3
1.2
1.1
1.0
0.11
0.10
0.9
0.8
0.7
0.6
0.5
0.4
0.3
0.2
0.1
Vulnerabilities (7)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU59592 - Exposure of sensitive information to an unauthorized actor CVE-2022-23106 |
CWE-200 | Medium | 1.55.1 | 13.01.2022 |
SB2022011319 |
||
| #VU21538 - Unprotected Storage of Credentials CVE-2019-10367 |
CWE-256 | Low | 1.27 | 04.10.2019 |
SB2019080728 |
||
| #VU21537 - Exposure of sensitive information to an unauthorized actor CVE-2019-10363 |
CWE-200 | Medium | 1.25 | 04.10.2019 |
SB2019073109 |
||
| #VU21536 - Improper input validation CVE-2019-10362 |
CWE-20 | Medium | 1.25 | 04.10.2019 |
SB2019073109 |
||
| #VU21534 - Credentials Management CVE-2019-10345 |
CWE-255 | Low | 1.25 | 04.10.2019 |
SB2019073109 |
||
| #VU21533 - Permissions, Privileges, and Access Controls CVE-2019-10344 |
CWE-264 | Low | 1.25 | 04.10.2019 |
SB2019073109 |
||
| #VU21532 - Unprotected Storage of Credentials CVE-2019-10343 |
CWE-256 | Low | 1.25 | 04.10.2019 |
SB2019073109 |