Known vulnerabilities in Support Core
Vendor:
Jenkins
Software:
Support Core
Software CPE:
cpe:2.3:a:jenkins:support_core:*:*:*:*:*:*:*:*
Website:
https://jenkins.io/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
7.2
Breakdown by Severity Chart
1206.1208.v9b_7a_1d48db_0f
1206.v14049fa_b_d860
2.80.2
2.80.1
2.81
2.72.2
2.80
2.79.1
2.76.1
2.79
2.78
2.77
2.76
2.75
2.74
2.73
2.68.1
2.70.1
2.72.1
2.72
2.71
2.70
2.69
2.68
2.67
2.66
2.65
2.64
2.63
2.62.1
2.62
2.61
2.60
2.59
2.58
2.57
2.56.1
2.56
2.55
2.54
2.53
2.52
2.51
2.50
2.49
2.48
2.47
2.46
2.45.1
2.45
2.44
2.43
2.42
2.41
2.40
2.39
2.38
2.37
2.36
2.35
2.34
2.33
2.32
2.31
2.30
2.29
2.28
2.27
2.25
2.24
2.23
2.22
2.21
2.20
2.19
2.18
2.17
2.16
2.15
2.14
2.13
2.12
2.11
2.10
2.9
2.8
2.7
2.6
2.5
2.4
2.3
2.2
2.1
2.0
1.8
1.7
1.6
1.5
1.4
1.3
1.2
1.1
1.0
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU69371 - Incorrect Authorization CVE-2022-45383 |
CWE-863 | Low | 1206.1208.v9b_7a_1d48db_0f | 16.11.2022 |
SB2022111619 |
||
| #VU60648 - Cleartext Storage of Sensitive Information CVE-2022-25187 |
CWE-312 | Low | 2.79.1 | 16.02.2022 |
SB2022021613 |
||
| #VU50949 - Exposure of sensitive information to an unauthorized actor CVE-2021-21621 |
CWE-200 | Low | 2.72.1 | 25.02.2021 |
SB2021022525 |
||
| #VU22918 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2019-16540 |
CWE-22 | Medium | 2.64 | 22.11.2019 |
SB2019112206 |
||
| #VU22917 - Permissions, Privileges, and Access Controls CVE-2019-16539 |
CWE-264 | Medium | 2.64 | 22.11.2019 |
SB2019112206 |