Known Vulnerabilities for Script Security by Jenkins
Listed below are 10 of the newest known vulnerabilities associated with "Script Security" by "Jenkins".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-100174 json | The AIL Framework tag selector component (var/www/static/js/tags.js) is vulnerable to stored cross-site scripting (XSS). A us... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-97863 json | The cisco_firesight_manager_ACL_rule_export module in misp-modules generates a shell script (.sh) that authenticates to and c... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-95626 json | Tauri's Content Security Policy hardening, which injects a random nonce to restrict script execution, provides zero protectio... | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-92129 json | Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier does not check calls from sandboxed scripts to methods added... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92128 json | Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier downloads a JAR file specified by URL twice, confirming the ... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92127 json | Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier automatically approves the classpath entries in an item conf... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92126 json | Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier does not reject @Builder annotations whose builderStrategy m... | Not Provided | 2026-09-16 | 2026-09-26 |
| CVE-2026-92125 json | Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier does not reject the @GroovyASTTransformationClass annotation... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92124 json | Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier checks the operations Groovy will perform with the elements ... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92123 json | Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier does not intercept operations performed on a null receiver (... | Not Provided | 2026-09-16 | 2026-09-16 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Jenkins | Script Security | 1.9 | |||
| Application | Jenkins | Script Security | 1.8 | |||
| Application | Jenkins | Script Security | 1.74 | |||
| Application | Jenkins | Script Security | 1.73 | |||
| Application | Jenkins | Script Security | 1.72 | |||
| Application | Jenkins | Script Security | 1.71 | |||
| Application | Jenkins | Script Security | 1.70 | |||
| Application | Jenkins | Script Security | 1.7 | |||
| Application | Jenkins | Script Security | 1.69 | |||
| Application | Jenkins | Script Security | 1.68 | |||
| Application | Jenkins | Script Security | 1.67 | |||
| Application | Jenkins | Script Security | 1.66.4 | |||
| Application | Jenkins | Script Security | 1.66.2 | |||
| Application | Jenkins | Script Security | 1.66.1 | |||
| Application | Jenkins | Script Security | 1.66 | |||
| Application | Jenkins | Script Security | 1.65 | |||
| Application | Jenkins | Script Security | 1.64 | |||
| Application | Jenkins | Script Security | 1.63.1 | |||
| Application | Jenkins | Script Security | 1.63 | |||
| Application | Jenkins | Script Security | 1.62 |