Known vulnerabilities in jenkins (Red Hat package) 1.625.3-2.el7aos

Version: 1.625.3-2.el7aos
Software CPE: cpe:2.3:o:red_hat:jenkins_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 41
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting jenkins (Red Hat package) version 1.625.3-2.el7aos jenkins (Red Hat package) 1.625.3-2.el7aos is affected by 41 vulnerabilities: 9 high, 14 medium, 18 low Critical High Medium Low

Vulnerabilities (41)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU59583 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-20617
CWE-78 Medium
No
No
2.319.2.1643391771-1.el8, 2.319.2.1643648617-1.el8, 2.319.2.1643882372-1.el8, 2.319.2.1643964085-1.el8, 2.319.2.1644411558-1.el7 13.01.2022 SB2022011311
SB2022021019
SB2022021637
and 5 more
#VU59576 - Cross-Site Request Forgery (CSRF)
CVE-2022-20612
CWE-352 Low
No
No
2.319.2.1643391771-1.el8, 2.319.2.1643648617-1.el8, 2.319.2.1643882372-1.el8, 2.319.2.1643964085-1.el8, 2.319.2.1644411558-1.el7 13.01.2022 SB2022011305
SB2022021019
SB2022021637
and 6 more
#VU57991 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-21698
CWE-22 Medium
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110804
SB2021112915
SB2021113017
and 3 more
#VU57990 - Missing Authorization
CVE-2021-21697
CWE-862 High
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57989 - Protection Mechanism Failure
CVE-2021-21696
CWE-693 Medium
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57988 - Missing Authorization
CVE-2021-21695
CWE-862 High
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57987 - Permissions, Privileges, and Access Controls
CVE-2021-21694
CWE-264 High
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57986 - Improper Authorization
CVE-2021-21693
CWE-285 High
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57985 - Missing Authorization
CVE-2021-21692
CWE-862 High
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57984 - Missing Authorization
CVE-2021-21691
CWE-862 High
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57983 - Protection Mechanism Failure
CVE-2021-21690
CWE-693 High
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57982 - Missing Authorization
CVE-2021-21689
CWE-862 High
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57981 - Missing Authorization
CVE-2021-21688
CWE-862 Medium
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57980 - Missing Authorization
CVE-2021-21687
CWE-862 Medium
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57979 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-21686
CWE-22 Medium
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU57978 - Missing Authorization
CVE-2021-21685
CWE-862 High
No
No
2.303.3.1637595827-1.el8, 2.303.3.1637596565-1.el8, 2.303.3.1637597018-1.el8, 2.303.3.1637597493-1.el8, 2.303.3.1637698110-1.el7 08.11.2021 SB2021110805
SB2021110806
SB2021112915
and 4 more
#VU52502 - Improper input validation
CVE-2020-27218
CWE-20 Medium
No
No
2.277.3.1623846768-1.el7, 2.277.3.1623853726-1.el8, 2.289.1.1624365627-1.el7 23.04.2021 SB2021042305
SB2021042635
SB2021063002
and 15 more
#VU52495 - Permissions, Privileges, and Access Controls
CVE-2021-21645
CWE-264 Low
No
No
2.263.3.1623239705-1.el8, 2.277.3.1623846768-1.el7, 2.289.1.1624365627-1.el7 22.04.2021 SB2021042205
SB2021060101
SB2021063033
and 3 more
#VU52385 - Improper input validation
CVE-2020-27223
CWE-20 Medium
Public exploit available
No
2.277.3.1623846768-1.el7, 2.277.3.1623853726-1.el8, 2.289.1.1624365627-1.el7 21.04.2021 SB2021042107
SB2021063002
SB2021063034
and 19 more
#VU48942 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-27216
CWE-362 Low
No
No
2.277.3.1623846768-1.el7, 2.277.3.1623853726-1.el8, 2.289.1.1624365627-1.el7 23.10.2020 SB2020121307
SB2020121308
SB2021012011
and 27 more


Showing elements 1 - 20 out of 41