Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

5,643 advisories

Loading
Missing permission checks in Health Advisor by CloudBees Plugin Moderate
CVE-2020-2094 was published for org.jenkins-ci.plugins:cloudbees-jenkins-advisor (Maven) May 24, 2022
NotMyFault
Credited to NotMyFault
Missing permission checks in Jenkins Amazon EC2 Plugin Moderate
CVE-2020-2091 was published for org.jenkins-ci.plugins:ec2 (Maven) May 24, 2022
NotMyFault
Credited to NotMyFault
Improper Authorization in Jenkins Alauda Kubernetes Suport Plugin Moderate
CVE-2019-16576 was published for io.alauda.jenkins.plugins:alauda-kubernetes-support (Maven) May 24, 2022
Jenkins Alauda DevOps Pipeline Plugin allows attackers with Overall/Read permission to capture credentials stored in Jenkins Moderate
CVE-2019-16574 was published for com.alauda.jenkins.plugins:alauda-devops-pipeline (Maven) May 24, 2022
Jenkins RapidDeploy Plugin missing permission check Moderate
CVE-2019-16571 was published for org.jenkins-ci.plugins:rapiddeploy-jenkins (Maven) May 24, 2022
Jenkins Team Concert Plugin missing permission check High
CVE-2019-16566 was published for org.jenkins-ci.plugins:teamconcert (Maven) May 24, 2022
Jenkins Team Concert Plugin missing permission check Moderate
CVE-2019-16567 was published for org.jenkins-ci.plugins:teamconcert (Maven) May 24, 2022
SiteVision 4 has Incorrect Access Control. High Unreviewed
CVE-2019-12734 was published May 24, 2022
Jenkins Google Compute Engine Plugin Missing Authorization vulnerability Moderate
CVE-2019-16547 was published for org.jenkins-ci.plugins:google-compute-engine (Maven) May 24, 2022
Missing permission check in Jenkins Oracle Cloud Infrastructure Compute Classic Plugin Moderate
CVE-2019-10457 was published for org.jenkins-ci.plugins:oracle-cloud-infrastructure-compute-classic (Maven) May 24, 2022
Missing permission check in Jenkins Rundeck Plugin Moderate
CVE-2019-10455 was published for org.jenkins-ci.plugins:rundeck (Maven) May 24, 2022
Missing permission checks in Google Kubernetes Engine Jenkins Plugin Moderate
CVE-2019-10445 was published for org.jenkins-ci.plugins:google-kubernetes-engine (Maven) May 24, 2022
Jenkins iceScrum Plugin vulnerable to Missing Authorization Moderate
CVE-2019-10442 was published for org.jenkins-ci.plugins:icescrum (Maven) May 24, 2022
ProTip! Advisories are also available from the GraphQL API