Known vulnerabilities in Pipeline Utility Steps

Vendor: Jenkins
Software CPE: cpe:2.3:a:jenkins:pipeline_utility_steps:*:*:*:*:*:*:*:*
Total vulnerabilities: 3
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Pipeline Utility Steps Pipeline Utility Steps is affected by 3 known vulnerabilities: 1 high, 2 medium Critical High Medium Low

Vulnerabilities (3)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU76236 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-32981
CWE-22 Medium
No
No
2.15.3 17.05.2023 SB2023051751
SB2023061545
SB2023061946
and 1 more
#VU69367 - Exposure of sensitive information to an unauthorized actor
CVE-2022-45381
CWE-200 Medium
No
No
2.13.2 16.11.2022 SB2022111613
SB2023020889
SB2023022307
and 1 more
#VU64957 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-33980
CWE-94 High
Available
No
2.13.1 06.07.2022 SB2022070645
SB2022072604
SB2022081517
and 31 more