Known vulnerabilities in Git client
Vendor:
Jenkins
Software:
Git client
Software CPE:
cpe:2.3:a:jenkins:git_client:*:*:*:*:*:jenkins:*:*
Website:
https://jenkins.io/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
6.6.1
6.6.0
6.5.0
6.4.3
6.4.2
6.4.1
6.4.0
6.1.5
6.2.1
6.1.4
6.3.3
6.3.2
6.3.1
6.3.0
6.2.0
6.1.3
6.1.2
5.0.3
5.0.2
5.0.1
6.1.1
6.1.0
6.0.0
5.0.0
4.7.0
4.6.0
4.5.0
4.4.0
4.3.0
4.2.0
4.1.0
4.0.0
3.12.4
3.13.1
3.12.2
3.13.0
3.12.1
3.12.0
3.11.3
3.11.2
3.10.0.2
3.11.1
3.10.0.1
3.11.0
3.10.1
3.10.0
3.9.0
3.8.0
3.7.2
3.7.1
3.7.0
3.6.0
3.5.1
3.5.0
3.4.2
3.4.1
3.4.0
3.3.2
3.3.1
3.3.0
3.2.1
3.2.0
3.1.1
3.1.0
1.0.0
1.0.1
1.0.2
1.0.3
1.0.4
1.0.5
1.0.6
1.0.7
1.1
1.1.1
1.1.2
1.2.0
1.3.0
2.9.0
1.4.0
1.4.1
1.4.2
1.4.3
1.4.4
1.4.5
1.4.6
1.5.0
1.5.1
1.6.0
1.6.1
1.6.2
1.6.3
1.6.4
1.6.5
1.6.6
1.7.0
1.8.0
1.8.1
1.9.0
1.9.1
1.9.2
1.10.0
1.10.1
1.10.2
1.11.0
1.11.1
1.12.0
1.13.0
1.14.0
1.14.1
1.15.0
1.16.0
1.16.1
1.17.0
1.17.1
1.18.0
1.19.0
1.19.1
1.19.2
1.19.3
1.19.4
1.19.5
1.19.6
1.19.7
1.20.0
1.20.1
1.20.2
1.21.0
2.0.0
2.1.0
2.2.0
2.2.1
2.3.0
2.4.0
2.4.1
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.5.0
2.6.0
2.7.0
2.7.1
2.7.2
2.7.3
2.7.3.1
2.7.4
2.7.4.1
2.7.5
2.7.6
2.7.7
2.7.7.1
2.8.0
2.8.1
2.8.2
2.8.3
2.8.4
2.8.5
2.8.6
3.0.0
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU135700 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2026-57282 |
CWE-78 | Medium | 6.6.1 | 29.06.2026 |
SB2026062906 |
||
| #VU119857 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2025-67640 |
CWE-78 | Medium | 6.4.1 | 11.12.2025 |
SB2025121126 |
||
| #VU114793 - Exposure of sensitive information to an unauthorized actor CVE-2025-58458 |
CWE-200 | Medium | 6.3.3 | 04.09.2025 |
SB2025090427 |
||
| #VU65843 - Improper input validation CVE-2022-36881 |
CWE-20 | Medium | 3.11.1 | 28.07.2022 |
SB2022072812 SB2022111850 SB2022120619 and 1 more |
||
| #VU21118 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2019-10392 |
CWE-78 | Medium | 2.8.5 | 16.09.2019 |
SB2019091607 SB2020061842 SB2020022451 and 2 more |