×
Apr 12, 2022 · Jenkins Security Advisory 2022-04-12. This advisory announces vulnerabilities in the following Jenkins deliverables: Credentials Plugin · CVS ...
This page lists all security advisories that have been published so far. This index is also available as an RSS feed. 2024. Jenkins Security Advisory 2024-05 ...
May 17, 2022 · This results in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to submit crafted Rundeck webhook payloads.
Jun 22, 2022 · This results in a reflected cross-site scripting (XSS) vulnerability. Embeddable Build Status Plugin 2.0.4 limits URLs to http and https ...
Oct 19, 2022 · This allows attackers able to configure Pipelines to have Jenkins build URLs from input step IDs that would bypass the CSRF protection of any ...
... <url> <loc>https://www.jenkins.io/2.0/</loc> ... security-fix-hudson-1-365-released/</loc> ... advisory-in-jenkins-core/</loc> <lastmod>2012-03-06</lastmod> ...
... Jenkins security advisories ... In some cases, HTTP proxies with authentication did not work for HTTPS URLs. ... Always send usage statistics over HTTPs to the new ...