×
Oct 19, 2022 · Descriptions. Sandbox bypass vulnerabilities in Script Security Plugin and in Pipeline: Groovy Plugin. SECURITY-2824 (1) / CVE-2022-43401 ...
Jan 24, 2024 · ... Jenkins from a script or shell environment. ... Remote code execution via Resource Root URLs ... Jenkins uses the Strict Crumb Issuer Plugin to ...
Feb 14, 2024 · In order to create this user, you can go to Manage Jenkins -> Configure Global Security -> Security Realm -> Jenkins' own user database [enable ...
Missing: /url | Show results with:/url
Feb 15, 2022 · Descriptions. OS command execution vulnerabilities in Pipeline-related plugins. SECURITY-2463 / CVE-2022-25173 (Pipeline: Groovy Plugin), CVE- ...
Jan 24, 2023 · Descriptions. Sandbox bypass vulnerability in Script Security Plugin. SECURITY-3016 / CVE-2023-24422. Severity (CVSS): High Affected plugin: ...
Apr 30, 2024 · Search for "Snyk Security". Install the plugin. 2. Configure a Snyk Installation. Go to "Manage ...
Missing: /url | Show results with:/url
May 4, 2024 · Assigning roles · User groups represent authorities provided by the Security Realm (e.g. Active Directory or LDAP plugin can provide groups) ...
Missing: /url | Show results with:/url
A Jenkins Admin can execute groovy scripts remotely by sending an HTTP POST request to /script/ url or /scriptText/ . curl example via bash. curl -d "script=< ...
Aug 16, 2023 · Descriptions. CSRF vulnerability in Folders Plugin may approve unsandboxed scripts. SECURITY-3106 / CVE-2023-40336. Severity (CVSS): High
Apr 27, 2022 · As part of this process, we are making some scripts available (shell and Powershell) that Jenkins owners can use to run on their Jenkins servers ...
Missing: /search | Show results with:/search