Early access: the directory is still filling out, and every rating here is a reported experience.

Security releases

Jenkins

Jenkins Security Advisory 2022-08-23

2022-08-23 Aug 23, 2022 Source: Vendor

Imported by the Jenkins advisory catcher from https://www.jenkins.io/security/advisory/2022-08-23/. 4 SECURITY issues listed. Draft. Review before publishing.

Source of record The credited names below are quoted verbatim from the vendor's own advisory: https://www.jenkins.io/security/advisory/2022-08-23/
Are you credited here? Sign in and claim your line: it is yours immediately, no review queue. The name the vendor printed stays next to your handle for anyone to check against the advisory above, and any member who thinks a claim is wrong can refute it.

Credited

5 lines
Showing 1–5 of 5
CVE-2021-25738 BR2022-0000-010176 SECURITY-2448 unclaimed
RCE vulnerability in Kubernetes Continuous Deploy Plugin
Credited as Jordy Versmissen
CVE-2022-38664 BR2022-0000-010177 SECURITY-2765 unclaimed
Stored XSS vulnerability in Job Configuration History Plugin
Credited as Kevin Guerroudj, CloudBees, Inc.
CVE-2022-38663 BR2022-0000-010178 SECURITY-2796 unclaimed
Improper masking of credentials in Git Plugin
Credited as Peter Darton, i2group.com
CVE-2022-38663 BR2022-0000-010179 SECURITY-2796 unclaimed
Improper masking of credentials in Git Plugin
Credited as Stefano Mazzucco, Mindera
CVE-2022-38665 BR2022-0000-010180 SECURITY-2157 unclaimed
RabbitMQ password stored in plain text by CollabNet Plugins Plugin
Credited as Son Nguyen (@s0nnguy3n_)