Skip to main content

Vendor/product archive

jenkins / pipeline:_build_step CVEs

Beta · best-effort

3 CVEs tagged to jenkins / pipeline:_build_step0 Critical, 0 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2023-25762

Published Feb 15, 2023

Jenkins Pipeline: Build Step Plugin 2.18 and earlier does not escape job names in a JavaScript expression used in the Pipeline Snippet Generator, resulting in a stored cross-site…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-25184

Published Feb 15, 2022

Jenkins Pipeline: Build Step Plugin 2.15 and earlier reveals password parameter default values when generating a pipeline script using the Pipeline Snippet Generator, allowing att…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-1000089

Published Oct 5, 2017

Builds in Jenkins are associated with an authentication that controls the permissions that the build has to interact with other elements in Jenkins. The Pipeline: Build Step Plugi…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1