Known vulnerabilities in Jenkins LTS - page 7

Vendor: Jenkins
Software: Jenkins LTS
Software CPE: cpe:2.3:a:jenkins:jenkins_lts:*:*:*:*:*:*:*:*
Total vulnerabilities: 129
Public exploits: 8
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Jenkins LTS Jenkins LTS is affected by 129 known vulnerabilities: 18 high, 60 medium, 51 low Critical High Medium Low

Vulnerabilities (129)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU24764 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-2105
CWE-451 Low
No
No
2.204.2 30.01.2020 SB2020013005
SB20200310153
#VU24763 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2104
CWE-200 Low
No
No
2.204.2 30.01.2020 SB2020013005
SB20200310153
#VU24762 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2103
CWE-200 Low
No
No
2.204.2 30.01.2020 SB2020013005
SB20200310153
#VU24761 - Cryptographic Issues
CVE-2020-2102
CWE-310 Medium
No
No
2.204.2 30.01.2020 SB2020013005
SB20200310153
#VU24760 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2101
CWE-200 Medium
No
No
2.204.2 30.01.2020 SB2020013005
SB20200310153
#VU24759 - Resource Management Errors
CVE-2020-2100
CWE-399 Medium
No
No
2.204.2 30.01.2020 SB2020013005
SB20200310153
#VU24758 - Improper Authentication
CVE-2020-2099
CWE-287 High
No
No
2.204.2 30.01.2020 SB2020013004
SB20200310153
#VU21437 - Cross-Site Request Forgery (CSRF)
CVE-2019-10384
CWE-352 Low
No
No
2.176.3 30.09.2019 SB2019082820
SB2019092016
SB2019083013
and 1 more
#VU21117 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-10383
CWE-79 Low
No
No
2.176.3 16.09.2019 SB2019082820
SB2019092016
SB2019083013
and 1 more


Showing elements 121 - 140 out of 129