Known vulnerabilities in Pipeline: Multibranch
Vendor:
Jenkins
Software:
Pipeline: Multibranch
Software CPE:
cpe:2.3:a:jenkins:pipeline_multibranch:*:*:*:*:*:*:*:*
Website:
https://jenkins.io/
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU60643 - UNIX Symbolic Link (Symlink) Following CVE-2022-25179 |
CWE-61 | Medium | 707.v71c3f0a_6ccdb_ | 16.02.2022 |
SB2022021608 SB2022032826 SB2022032910 and 4 more |
||
| #VU60642 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-25175 |
CWE-78 | Medium | 707.v71c3f0a_6ccdb_ | 16.02.2022 |
SB2022021608 SB2022032826 SB2022032910 and 4 more |