Known Vulnerabilities for Pipeline Github Notify Step by Jenkins
Listed below are 3 of the newest known vulnerabilities associated with "Pipeline Github Notify Step" by "Jenkins".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-2118 json | A missing permission check in Jenkins Pipeline GitHub Notify Step Plugin 1.0.4 and earlier in form-related methods allowed us... | 4.3 - MEDIUM | 2020-02-12 | 2023-10-25 |
| CVE-2020-2117 json | A missing permission check in Jenkins Pipeline GitHub Notify Step Plugin 1.0.4 and earlier allows attackers with Overall/Read... | 4.3 - MEDIUM | 2020-02-12 | 2023-10-25 |
| CVE-2020-2116 json | A cross-site request forgery vulnerability in Jenkins Pipeline GitHub Notify Step Plugin 1.0.4 and earlier allows attackers t... | 8.8 - HIGH | 2020-02-12 | 2023-10-25 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Jenkins | Pipeline Github Notify Step | 1.0.5 | |||
| Application | Jenkins | Pipeline Github Notify Step | 1.0.4 | |||
| Application | Jenkins | Pipeline Github Notify Step | 1.0.3 | |||
| Application | Jenkins | Pipeline Github Notify Step | 1.0.2 | |||
| Application | Jenkins | Pipeline Github Notify Step | 1.0.1 | |||
| Application | Jenkins | Pipeline Github Notify Step | 1.0.0 |