pkg:maven/io.jenkins.plugins/neuvector-vulnerability-scanner
Type
maven
Namespace
io.jenkins.plugins
Name
neuvector-vulnerability-scanner
Known advisories, vulnerabilities and fixes for io.jenkins.plugins/neuvector-vulnerability-scanner package.
High
1
Moderate
4
Type | Version | Distribution | # CVEs | # Advisory ID | Title | Severity | Published |
---|---|---|---|---|---|---|---|
Affected | <= 1.5 |
CVE-2019-10430
|
MAVEN:GHSA-3FPX-G9H3-HH8X | Jenkins NeuVector Vulnerability Scanner Plugin stored credentials in plain text | moderate |
2022-05-24T22:00:44
(2 years ago) |
|
Fixed | = 1.6 |
CVE-2019-10430
|
MAVEN:GHSA-3FPX-G9H3-HH8X | Jenkins NeuVector Vulnerability Scanner Plugin stored credentials in plain text | moderate |
2022-05-24T22:00:44
(2 years ago) |
|
Affected | < 2.2 |
CVE-2023-49674
|
MAVEN:GHSA-PH87-4X2G-6HP4 | Jenkins NeuVector Vulnerability Scanner Plugin missing permission check | moderate |
2023-11-29T15:30:21
(9 months ago) |
|
Fixed | = 2.2 |
CVE-2023-49674
|
MAVEN:GHSA-PH87-4X2G-6HP4 | Jenkins NeuVector Vulnerability Scanner Plugin missing permission check | moderate |
2023-11-29T15:30:21
(9 months ago) |
|
Affected | <= 1.22 |
CVE-2023-30517
|
MAVEN:GHSA-R3MM-V4X7-2PHM | Jenkins NeuVector Vulnerability Scanner Plugin disables SSL/TLS certificate and hostname validation | moderate |
2023-04-12T18:30:37
(17 months ago) |
|
Affected | <= 1.20 |
CVE-2022-43434
|
MAVEN:GHSA-WMFH-H3VM-RCXM | Content-Security-Policy protection for user content disabled by Jenkins NeuVector Vulnerability Scanner Plugin | high |
2022-10-19T19:00:18
(23 months ago) |
|
Fixed | = 1.22 |
CVE-2022-43434
|
MAVEN:GHSA-WMFH-H3VM-RCXM | Content-Security-Policy protection for user content disabled by Jenkins NeuVector Vulnerability Scanner Plugin | high |
2022-10-19T19:00:18
(23 months ago) |
|
Affected | < 2.2 |
CVE-2023-49673
|
MAVEN:GHSA-WPFC-R5QQ-7R7P | Jenkins NeuVector Vulnerability Scanner Plugin Cross-Site Request Forgery vulnerability | moderate |
2023-11-29T15:30:21
(9 months ago) |
|
Fixed | = 2.2 |
CVE-2023-49673
|
MAVEN:GHSA-WPFC-R5QQ-7R7P | Jenkins NeuVector Vulnerability Scanner Plugin Cross-Site Request Forgery vulnerability | moderate |
2023-11-29T15:30:21
(9 months ago) |