Known Vulnerabilities for Reverse Proxy Auth by Jenkins
Listed below are 3 of the newest known vulnerabilities associated with "Reverse Proxy Auth" by "Jenkins".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-54762 json | Traefik is an HTTP reverse proxy and load balancer. From 3.7.0-ea.1 until 3.7.5, there is a medium severity vulnerability in ... | Not Provided | 2026-06-23 | 2026-06-24 |
| CVE-2026-46685 json | RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, when RUSTFS_CORS_ALLOWED_ORIGINS is unset... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2026-43926 json | FOSSBilling is a free, open-source billing and client management system. Prior to version 0.8.0, the password reset confirmat... | Not Provided | 2026-06-04 | 2026-06-04 |
| CVE-2026-41017 json | Apache Airflow's `JWTRefreshMiddleware` set the JWT auth cookie without the `Secure` flag, so deployments running the Airflow... | Not Provided | 2026-06-01 | 2026-06-02 |
| CVE-2026-40575 json | OAuth2 Proxy is a reverse proxy that provides authentication using OAuth2 providers. Versions 7.5.0 through 7.15.1 may trust ... | Not Provided | 2026-04-22 | 2026-07-15 |
| CVE-2026-33433 json | Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.42, 3.6.11, and 3.7.0-ea.3, when `headerField` is ... | Not Provided | 2026-03-27 | 2026-07-15 |
| CVE-2023-32987 json | A cross-site request forgery (CSRF) vulnerability in Jenkins Reverse Proxy Auth Plugin 1.7.4 and earlier allows attackers to ... | 8.8 - HIGH | 2023-05-16 | 2023-05-25 |
| CVE-2022-45384 json | Jenkins Reverse Proxy Auth Plugin 1.7.3 and earlier stores the LDAP manager password unencrypted in the global config.xml fil... | 6.5 - MEDIUM | 2022-11-15 | 2023-11-13 |
| CVE-2018-1000150 json | An exposure of sensitive information vulnerability exists in Jenkins Reverse Proxy Auth Plugin 1.5 and older in ReverseProxyS... | 3.3 - LOW | 2018-04-05 | 2018-05-15 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Jenkins | Reverse Proxy Auth | 1.6.3 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.6.2 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.6.1 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.6.0 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.5 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.4.0 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.3.3 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.3.2 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.3.1 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.3 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.2 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.0.1 | |||
| Application | Jenkins | Reverse Proxy Auth | 1.0 |