Known Vulnerabilities for Badge by Jenkins
Listed below are 2 of the newest known vulnerabilities associated with "Badge" by "Jenkins".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57532 json | Malicious HTML content contained in the layout specification of a PDF ticket or badge layout was executed when the PDF edito... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-53987 json | The Tag plugin for GLPI 11 before 2.14.4 stores the tag name without HTML sanitization and renders it into the Kanban badge m... | Not Provided | 2026-07-09 | 2026-07-20 |
| CVE-2026-13450 json | The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vul... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-12435 json | The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to authorization bypass in all ... | Not Provided | 2026-07-01 | 2026-07-01 |
| CVE-2026-8707 json | The NS Product icon badge plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via PHP_SELF in all versions u... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-7436 json | The WPC Badge Management for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'text' att... | Not Provided | 2026-07-29 | 2026-07-29 |
| CVE-2026-6180 json | A race condition exists in PaperCut MF when processing badge-swipe data from certain HP multifunction devices. Under specific... | Not Provided | 2026-05-05 | 2026-05-05 |
| CVE-2022-23108 json | Jenkins Badge Plugin 1.9 and earlier does not escape the description and does not check for allowed protocols when creating a... | 5.4 - MEDIUM | 2022-01-12 | 2023-11-15 |
| CVE-2018-1000604 json | A persisted cross-site scripting vulnerability exists in Jenkins Badge Plugin 1.4 and earlier in BadgeSummaryAction.java, Htm... | 5.4 - MEDIUM | 2018-06-26 | 2018-08-23 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Jenkins | Badge | 2.3.1 | |||
| Application | Jenkins | Badge | 2.3 | |||
| Application | Jenkins | Badge | 2.2.2 | |||
| Application | Jenkins | Badge | 2.2.1 | |||
| Application | Jenkins | Badge | 2.2 | |||
| Application | Jenkins | Badge | 2.1 | |||
| Application | Jenkins | Badge | 2.0 | |||
| Application | Jenkins | Badge | 1.9 | |||
| Application | Jenkins | Badge | 1.8 | |||
| Application | Jenkins | Badge | 1.7 | |||
| Application | Jenkins | Badge | 1.6 | |||
| Application | Jenkins | Badge | 1.5 | |||
| Application | Jenkins | Badge | 1.4 | |||
| Application | Jenkins | Badge | 1.3 | |||
| Application | Jenkins | Badge | 1.2 | |||
| Application | Jenkins | Badge | 1.10 | |||
| Application | Jenkins | Badge | 1.1 | |||
| Application | Jenkins | Badge | 1.0 |