← All vendors

jenkins

26 known vulnerabilities affecting jenkins products.

Products

jenkins 17 script_security 9

Vulnerabilities by priority

CVEPriorityEPSSCVSSKEVWhat
CVE-2026-53435 High 53.1% 8.8 In Jenkins 2.567 and earlier, LTS 2.555.2 and earlier, it is possible for attack…
CVE-2026-33001 Medium 1.1% 8.8 Jenkins 2.554 and earlier, LTS 2.541.2 and earlier does not safely handle symbol…
CVE-2026-57281 Medium 0.9% 7.5 Jenkins Script Security Plugin 1402.v94c9ce464861 and earlier does not reject Gr…
CVE-2026-84645 Medium 0.7% 8.8 In Jenkins 2.579 and earlier, LTS 2.568.2 and earlier, objects of types marked a…
CVE-2026-92122 Medium 0.6% 8.8 Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier does not check …
CVE-2026-92123 Medium 0.6% 8.8 Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier does not interc…
CVE-2026-92124 Medium 0.6% 8.8 Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier checks the oper…
CVE-2026-92125 Medium 0.5% 8.8 Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier does not reject…
CVE-2026-84652 Medium 0.5% 7.3 In Jenkins 2.579 and earlier, LTS 2.568.2 and earlier, Jenkins does not rotate t…
CVE-2026-92127 Medium 0.5% 8.0 Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier automatically a…
CVE-2026-92129 Medium 0.4% 7.5 Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier does not check …
CVE-2026-84648 Medium 0.4% 8.8 In Jenkins 2.579 and earlier, LTS 2.568.2 and earlier, the system log viewer doe…
CVE-2026-84650 Medium 0.4% 8.8 In Jenkins 2.579 and earlier, LTS 2.568.2 and earlier, transient fields cannot b…
CVE-2026-92128 Medium 0.2% 7.5 Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier downloads a JAR…
CVE-2026-92126 Medium 0.2% 8.5 Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier does not reject…
CVE-2026-53437 Low 0.5% 4.3 Jenkins 2.567 and earlier, LTS 2.555.2 and earlier improperly determines that a …
CVE-2026-70427 Low 0.3% 4.3 Jenkins 2.575 and earlier, LTS 2.568.1 and earlier does not safely handle symbol…
CVE-2026-70428 Low 0.3% 4.3 Jenkins 2.575 and earlier, LTS 2.568.1 and earlier improperly identifies file pa…
CVE-2026-84646 Low 0.3% 4.3 In Jenkins 2.579 and earlier, LTS 2.568.2 and earlier, user objects can appear a…
CVE-2026-84653 Low 0.3% 3.5 Jenkins 2.421 through 2.579 (both inclusive), LTS 2.426.1 through 2.568.2 (both …
CVE-2026-84651 Low 0.2% 6.3 In Jenkins 2.579 and earlier, LTS 2.568.2 and earlier, the REST API and CLI endp…
CVE-2026-70429 Low 0.2% 6.5 Jenkins 2.575 and earlier, LTS 2.568.1 and earlier handles case-insensitivity in…
CVE-2026-84655 Low 0.2% 4.3 Jenkins 2.579 and earlier, LTS 2.568.2 and earlier does not escape map keys when…
CVE-2026-70430 Low 0.2% 2.7 Jenkins 2.575 and earlier, LTS 2.568.1 and earlier does not restrict the types o…
CVE-2026-84656 Low 0.2% 4.3 A missing permission check in Jenkins 2.579 and earlier, LTS 2.568.2 and earlier…
CVE-2026-84657 Low 0.2% 4.2 In Jenkins 2.579 and earlier, LTS 2.568.2 and earlier, the build CLI command doe…