Vulnerability index

Browse CVEs

1,321 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2019-1003071 Jenkins OctopusDeploy Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users … Octopusdeploy Mitigation only Fix from $1,9502019-04-04 HIGH 8.8 CVE-2019-1003072 Jenkins WildFly Deployer Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with E… Wildfly Deployer Mitigation only Fix from $1,9502019-04-04 HIGH 8.8 CVE-2019-1003073 Jenkins VS Team Services Continuous Deployment Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be … Vs Team Services Continuous Deployment Mitigation only Fix from $1,9502019-04-04 HIGH 8.8 CVE-2019-1003074 Jenkins Hyper.sh Commons Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by use… Hyper.sh Commons Mitigation only Fix from $1,9502019-04-04 HIGH 8.8 CVE-2019-1003075 Jenkins Audit to Database Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by us… Audit To Database Mitigation only Fix from $1,9502019-04-04 MEDIUM 6.5 CVE-2019-1003076 A cross-site request forgery vulnerability in Jenkins Audit to Database Plugin in the DbAuditPublisherDescriptorImpl#doTestJdbcConnection form valida… Audit To Database Mitigation only Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003077 A missing permission check in Jenkins Audit to Database Plugin in the DbAuditPublisherDescriptorImpl#doTestJdbcConnection form validation method allo… Audit To Database Mitigation only Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003078 A cross-site request forgery vulnerability in Jenkins VMware Lab Manager Slaves Plugin in the LabManager.DescriptorImpl#doTestConnection form validat… Vmware Lab Manager Slaves Mitigation only Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003079 A missing permission check in Jenkins VMware Lab Manager Slaves Plugin in the LabManager.DescriptorImpl#doTestConnection form validation method allow… Vmware Lab Manager Slaves after 0.2.8 Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003080 A cross-site request forgery vulnerability in Jenkins OpenShift Deployer Plugin in the DeployApplication.DeployApplicationDescriptor#doCheckLogin for… Openshift Deployer after 1.2.0 Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003081 A missing permission check in Jenkins OpenShift Deployer Plugin in the DeployApplication.DeployApplicationDescriptor#doCheckLogin form validation met… Openshift Deployer after 1.2.0 Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003082 A cross-site request forgery vulnerability in Jenkins Gearman Plugin in the GearmanPluginConfig#doTestConnection form validation method allows attack… Gearman Mitigation only Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003083 A missing permission check in Jenkins Gearman Plugin in the GearmanPluginConfig#doTestConnection form validation method allows attackers with Overall… Gearman after 0.2.0 Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003084 A cross-site request forgery vulnerability in Jenkins Zephyr Enterprise Test Management Plugin in the ZeeDescriptor#doTestConnection form validation … Zephyr Enterprise Test Management Mitigation only Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003085 A missing permission check in Jenkins Zephyr Enterprise Test Management Plugin in the ZeeDescriptor#doTestConnection form validation method allows at… Zephyr Enterprise Test Management after 1.6 Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003086 A cross-site request forgery vulnerability in Jenkins Chef Sinatra Plugin in the ChefBuilderConfiguration.DescriptorImpl#doTestConnection form valida… Chef Sinatra Mitigation only Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003087 A missing permission check in Jenkins Chef Sinatra Plugin in the ChefBuilderConfiguration.DescriptorImpl#doTestConnection form validation method allo… Chef Sinatra after 1.2 Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003088 Jenkins Fabric Beta Publisher Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users w… Fabric Beta Publisher after 2.1 Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003089 Jenkins Upload to pgyer Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Ex… Upload To Pgyer after 1.31 Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003090 A cross-site request forgery vulnerability in Jenkins SOASTA CloudTest Plugin in the CloudTestServer.DescriptorImpl#doValidate form validation method… Soasta Cloudtest Mitigation only Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003091 A missing permission check in Jenkins SOASTA CloudTest Plugin in the CloudTestServer.DescriptorImpl#doValidate form validation method allows attacker… Soasta Cloudtest after 2.25 Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003092 A cross-site request forgery vulnerability in Jenkins Nomad Plugin in the NomadCloud.DescriptorImpl#doTestConnection form validation method allows at… Nomad Mitigation only Fix from $1,6002019-04-04 MEDIUM 6.5 CVE-2019-1003093 A missing permission check in Jenkins Nomad Plugin in the NomadCloud.DescriptorImpl#doTestConnection form validation method allows attackers with Ove… Nomad after 0.4 Fix from $1,6002019-04-04 HIGH 8.8 CVE-2019-1003051 Jenkins IRC Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with acces… Irc Mitigation only Fix from $1,9502019-04-04 HIGH 8.8 CVE-2019-1003052 Jenkins AWS Elastic Beanstalk Publisher Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can b… Aws Elastic Beanstalk Publisher Mitigation only Fix from $1,9502019-04-04 HIGH 8.8 CVE-2019-1003053 Jenkins HockeyApp Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended… Hockeyapp Mitigation only Fix from $1,9502019-04-04 HIGH 8.8 CVE-2019-1003054 Jenkins Jira Issue Updater Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with… Jira Issue Updater Mitigation only Fix from $1,9502019-04-04 HIGH 8.8 CVE-2019-1003055 Jenkins FTP publisher Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users … Ftp Publisher Mitigation only Fix from $1,9502019-04-04 HIGH 8.8 CVE-2019-1003056 Jenkins WebSphere Deployer Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with… Websphere Deployer Mitigation only Fix from $1,9502019-04-04 HIGH 8.8 CVE-2019-1003057 Jenkins Bitbucket Approve Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by us… Bitbucket Approve Mitigation only Fix from $1,9502019-04-04