Known Vulnerabilities for Git by Jenkins
Listed below are 6 of the newest known vulnerabilities associated with "Git" by "Jenkins".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-21684 | Jenkins Git Plugin 4.8.2 and earlier does not escape the Git SHA-1 checksum parameters provided to commit notifications when ... | 6.1 - MEDIUM | 2021-10-06 | 2023-11-22 |
| CVE-2020-2136 | Jenkins Git Plugin 4.2.0 and earlier does not escape the error message for the repository URL for Microsoft TFS field form va... | 5.4 - MEDIUM | 2020-03-09 | 2023-10-25 |
| CVE-2019-1003010 | A cross-site request forgery vulnerability exists in Jenkins Git Plugin 3.9.1 and earlier in src/main/java/hudson/plugins/git... | 4.3 - MEDIUM | 2019-02-06 | 2019-04-26 |
| CVE-2018-1000182 | A server-side request forgery vulnerability exists in Jenkins Git Plugin 3.9.0 and older in AssemblaWeb.java, GitBlitReposito... | 6.4 - MEDIUM | 2018-06-05 | 2018-07-18 |
| CVE-2018-1000110 | An improper authorization vulnerability exists in Jenkins Git Plugin version 3.7.0 and earlier in GitStatus.java that allows ... | 5.3 - MEDIUM | 2018-03-13 | 2019-10-03 |
| CVE-2017-1000092 | Git Plugin connects to a user-specified Git repository as part of form validation. An attacker with no direct access to Jenki... | 7.5 - HIGH | 2017-10-05 | 2017-10-17 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Jenkins | Git | 4.2.0 | All | All | All |
| Application | Jenkins | Git | 4.0.0 | beta1 | All | All |
| Application | Jenkins | Git | 4.0.0 | beta2 | All | All |
| Application | Jenkins | Git | 4.0.0 | beta3 | All | All |
| Application | Jenkins | Git | 4.0.0 | beta4 | All | All |
| Application | Jenkins | Git | 4.0.0 | beta7 | All | All |
| Application | Jenkins | Git | 4.0.0 | beta8 | All | All |
| Application | Jenkins | Git | 4.0.0 | rc | All | All |
| Application | Jenkins | Git | 3.9.3 | All | All | All |
| Application | Jenkins | Git | 3.9.2 | All | All | All |
| Application | Jenkins | Git | 3.9.1 | All | All | All |
| Application | Jenkins | Git | 3.9.0 | All | All | All |
| Application | Jenkins | Git | 3.8.0 | All | All | All |
| Application | Jenkins | Git | 3.7.0 | All | All | All |
| Application | Jenkins | Git | 3.6.4 | All | All | All |
| Application | Jenkins | Git | 3.6.3 | All | All | All |
| Application | Jenkins | Git | 3.6.2 | All | All | All |
| Application | Jenkins | Git | 3.6.1 | All | All | All |
| Application | Jenkins | Git | 3.6.0 | All | All | All |
| Application | Jenkins | Git | 3.5.1 | All | All | All |