pkg:maven/org.jenkins-ci.plugins/kubernetes-cd
Type
maven
Namespace
org.jenkins-ci.plugins
Name
kubernetes-cd
Known advisories, vulnerabilities and fixes for org.jenkins-ci.plugins/kubernetes-cd package.
High
4
Moderate
2
Medium
2
Type | Version | Distribution | # CVEs | # Advisory ID | Title | Severity | Published |
---|---|---|---|---|---|---|---|
Affected | <= 2.3.1 |
CVE-2022-27208
|
JENKINS:SECURITY-2096 | Arbitrary file read vulnerability in `kubernetes-cd` | medium |
2022-03-15T00:00:00
(2 years ago) |
|
Affected | <= 2.3.1 |
CVE-2021-25738
|
JENKINS:SECURITY-2448 | RCE vulnerability in `kubernetes-cd` | high |
2022-08-23T00:00:00
(2 years ago) |
|
Affected | <= 2.3.1 |
CVE-2022-27209
|
JENKINS:SECURITY-2636 | Missing permission checks in `kubernetes-cd` allow enumerating credentials IDs | medium |
2022-03-15T00:00:00
(2 years ago) |
|
Affected | <= 2.3.1 |
CVE-2022-27210
CVE-2022-27211 |
JENKINS:SECURITY-2681 | CSRF vulnerability and missing permission checks in `kubernetes-cd` allow capturing credentials | high |
2022-03-15T00:00:00
(2 years ago) |
|
Affected | <= 2.3.1 |
CVE-2022-27209
|
MAVEN:GHSA-23X5-J68G-6JPW | Missing permission checks in Jenkins kubernetes-cd Plugin allow enumerating credentials IDs | moderate |
2022-03-16T00:00:43
(2 years ago) |
|
Affected | <= 2.3.1 |
CVE-2022-27211
|
MAVEN:GHSA-794J-HX96-4W3M | CSRF vulnerability and missing permission checks in Jenkins kubernetes-cd Plugin allow capturing credentials | high |
2022-03-16T00:00:42
(2 years ago) |
|
Affected | <= 2.3.1 |
CVE-2022-27208
|
MAVEN:GHSA-FPXQ-W7P9-R924 | Arbitrary file read vulnerability in Jenkins kubernetes-cd Plugin | moderate |
2022-03-16T00:00:42
(2 years ago) |
|
Affected | <= 2.3.1 |
CVE-2022-27210
|
MAVEN:GHSA-VQ6C-FVXW-P45V | CSRF vulnerability in Jenkins kubernetes-cd Plugin allow capturing credentials | high |
2022-03-16T00:00:43
(2 years ago) |