Known Vulnerabilities for Dotci by Jenkins
Listed below are 3 of the newest known vulnerabilities associated with "Dotci" by "Jenkins".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-41239 json | Jenkins DotCi Plugin 2.40.00 and earlier does not escape the GitHub user name parameter provided to commit notifications when... | 5.4 - MEDIUM | 2022-09-21 | 2023-11-01 |
| CVE-2022-41238 json | A missing permission check in Jenkins DotCi Plugin 2.40.00 and earlier allows unauthenticated attackers to trigger builds of ... | 9.8 - CRITICAL | 2022-09-21 | 2023-11-01 |
| CVE-2022-41237 json | Jenkins DotCi Plugin 2.40.00 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, ... | 9.8 - CRITICAL | 2022-09-21 | 2023-11-01 |