Known vulnerabilities in jenkins-2-plugins (Red Hat package) - page 8

Software CPE: cpe:2.3:o:red_hat:jenkins-2-plugins_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 232
Public exploits: 16
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting jenkins-2-plugins (Red Hat package) jenkins-2-plugins (Red Hat package) is affected by 232 known vulnerabilities: 30 high, 125 medium, 77 low Critical High Medium Low

Vulnerabilities (232)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU59583 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-20617
CWE-78 Medium
No
No
3.11.1644412543-1.el7, 4.6.1643965689-1.el8, 4.7.1643883495-1.el8, 4.8.1643649345-1.el8, 4.9.1643389956-1.el8 13.01.2022 SB2022011311
SB2022021019
SB2022021637
and 5 more
#VU59576 - Cross-Site Request Forgery (CSRF)
CVE-2022-20612
CWE-352 Low
No
No
3.11.1644412543-1.el7, 4.6.1643965689-1.el8, 4.7.1643883495-1.el8, 4.8.1643649345-1.el8, 4.9.1643389956-1.el8 13.01.2022 SB2022011305
SB2022021019
SB2022021637
and 6 more
#VU58460 - Incorrect Default Permissions
CVE-2021-3917
CWE-276 Low
No
No
4.8.1637599935-1.el8 30.11.2021 SB2021113016
SB2021113017
#VU57991 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-21698
CWE-22 Medium
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110804
SB2021112915
SB2021113017
and 3 more
#VU57990 - Missing Authorization
CVE-2021-21697
CWE-862 High
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57989 - Protection Mechanism Failure
CVE-2021-21696
CWE-693 Medium
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57988 - Missing Authorization
CVE-2021-21695
CWE-862 High
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57987 - Permissions, Privileges, and Access Controls
CVE-2021-21694
CWE-264 High
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57986 - Improper Authorization
CVE-2021-21693
CWE-285 High
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57985 - Missing Authorization
CVE-2021-21692
CWE-862 High
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57984 - Missing Authorization
CVE-2021-21691
CWE-862 High
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57983 - Protection Mechanism Failure
CVE-2021-21690
CWE-693 High
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57982 - Missing Authorization
CVE-2021-21689
CWE-862 High
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57981 - Missing Authorization
CVE-2021-21688
CWE-862 Medium
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57980 - Missing Authorization
CVE-2021-21687
CWE-862 Medium
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57979 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-21686
CWE-22 Medium
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57978 - Missing Authorization
CVE-2021-21685
CWE-862 High
No
No
3.11.1637699107-1.el7, 4.6.1637602169-1.el8, 4.7.1637600997-1.el8, 4.8.1637599935-1.el8, 4.9.1637598812-1.el8 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU56829 - Improper input validation
CVE-2021-29923
CWE-20 Medium
No
No
4.9.1644822177-1.el8 22.09.2021 SB2021092225
SB2021092226
SB2021100408
and 37 more
#VU56022 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-33195
CWE-79 Medium
No
No
4.8.1633555500-1.el8 22.08.2021 SB2021070405
SB2021082204
SB2021083116
and 38 more
#VU55668 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-36221
CWE-362 Medium
No
No
4.9.1644822177-1.el8 10.08.2021 SB2021081001
SB2021081217
SB2021081219
and 32 more


Showing elements 141 - 160 out of 232