pkg:maven/org.jenkins-ci.plugins/script-security

Type maven
Namespace org.jenkins-ci.plugins
Name script-security

Known advisories, vulnerabilities and fixes for org.jenkins-ci.plugins/script-security package.

Repository
https://mvnrepository.com/artifact/org.jenkins-ci.plugins/script-security
Critical 5
High 36
Moderate 9
Medium 2
Type Version Distribution # CVEs # Advisory ID Title Severity Published
Affected <= 1.47 CVE-2018-1000865
jenkins JENKINS:SECURITY-1186 Sandbox Bypass in Script Security and Pipeline Groovy Plugins high 2018-10-29T00:00:00
(5 years ago)
Fixed = 1.48 CVE-2018-1000865
jenkins JENKINS:SECURITY-1186 Sandbox Bypass in Script Security and Pipeline Groovy Plugins high 2018-10-29T00:00:00
(5 years ago)
Affected <= 1.49 CVE-2019-1003000
CVE-2019-1003001
CVE-2019-1003002
jenkins JENKINS:SECURITY-1266 Sandbox Bypass in Script Security and Pipeline Plugins high 2019-01-08T00:00:00
(5 years ago)
Fixed = 1.50 CVE-2019-1003000
CVE-2019-1003001
CVE-2019-1003002
jenkins JENKINS:SECURITY-1266 Sandbox Bypass in Script Security and Pipeline Plugins high 2019-01-08T00:00:00
(5 years ago)
Affected <= 1.50 CVE-2019-1003005
jenkins JENKINS:SECURITY-1292 Sandbox Bypass in Script Security Plugin high 2019-01-28T00:00:00
(5 years ago)
Fixed = 1.51 CVE-2019-1003005
jenkins JENKINS:SECURITY-1292 Sandbox Bypass in Script Security Plugin high 2019-01-28T00:00:00
(5 years ago)
Affected <= 1.52 CVE-2019-1003024
jenkins JENKINS:SECURITY-1320 Sandbox Bypasses in Script Security Plugin high 2019-02-19T00:00:00
(5 years ago)
Fixed = 1.53 CVE-2019-1003024
jenkins JENKINS:SECURITY-1320 Sandbox Bypasses in Script Security Plugin high 2019-02-19T00:00:00
(5 years ago)
Affected <= 1.53 CVE-2019-1003029
jenkins JENKINS:SECURITY-1336-1 Sandbox bypass in Script Security Plugin high 2019-03-06T00:00:00
(5 years ago)
Fixed = 1.54 CVE-2019-1003029
jenkins JENKINS:SECURITY-1336-1 Sandbox bypass in Script Security Plugin high 2019-03-06T00:00:00
(5 years ago)
Affected <= 1.55 CVE-2019-1003040
jenkins JENKINS:SECURITY-1353 Sandbox bypass in Script Security Plugin and Pipeline: Groovy Plugin high 2019-03-25T00:00:00
(5 years ago)
Fixed = 1.56 CVE-2019-1003040
jenkins JENKINS:SECURITY-1353 Sandbox bypass in Script Security Plugin and Pipeline: Groovy Plugin high 2019-03-25T00:00:00
(5 years ago)
Affected <= 1.61 CVE-2019-10355
jenkins JENKINS:SECURITY-1465-1 Sandbox bypass through type casts in `script-security` high 2019-07-31T00:00:00
(5 years ago)
Fixed = 1.62 CVE-2019-10355
jenkins JENKINS:SECURITY-1465-1 Sandbox bypass through type casts in `script-security` high 2019-07-31T00:00:00
(5 years ago)
Affected <= 1.61 CVE-2019-10356
jenkins JENKINS:SECURITY-1465-2 Sandbox bypass through method pointer expressions in `script-security` high 2019-07-31T00:00:00
(5 years ago)
Fixed = 1.62 CVE-2019-10356
jenkins JENKINS:SECURITY-1465-2 Sandbox bypass through method pointer expressions in `script-security` high 2019-07-31T00:00:00
(5 years ago)
Affected <= 1.62 CVE-2019-10393
CVE-2019-10394
CVE-2019-10399
CVE-2019-10400
jenkins JENKINS:SECURITY-1538 Sandbox bypass vulnerability in `script-security` high 2019-09-12T00:00:00
(5 years ago)
Fixed = 1.63 CVE-2019-10393
CVE-2019-10394
CVE-2019-10399
CVE-2019-10400
jenkins JENKINS:SECURITY-1538 Sandbox bypass vulnerability in `script-security` high 2019-09-12T00:00:00
(5 years ago)
Affected <= 1.64 CVE-2019-10431
jenkins JENKINS:SECURITY-1579 Sandbox bypass vulnerability in `script-security` high 2019-10-01T00:00:00
(5 years ago)
Fixed = 1.65 CVE-2019-10431
jenkins JENKINS:SECURITY-1579 Sandbox bypass vulnerability in `script-security` high 2019-10-01T00:00:00
(5 years ago)
Affected <= 1.67 CVE-2019-16538
jenkins JENKINS:SECURITY-1658 Sandbox bypass vulnerability in `script-security` high 2019-11-21T00:00:00
(4 years ago)
Fixed = 1.68 CVE-2019-16538
jenkins JENKINS:SECURITY-1658 Sandbox bypass vulnerability in `script-security` high 2019-11-21T00:00:00
(4 years ago)
Affected <= 1.69 CVE-2020-2110
jenkins JENKINS:SECURITY-1713 Sandbox bypass vulnerability in `script-security` high 2020-02-12T00:00:00
(4 years ago)
Fixed = 1.70 CVE-2020-2110
jenkins JENKINS:SECURITY-1713 Sandbox bypass vulnerability in `script-security` high 2020-02-12T00:00:00
(4 years ago)
Affected <= 1.70 CVE-2020-2134
CVE-2020-2135
jenkins JENKINS:SECURITY-1754 Sandbox bypass vulnerability in `script-security` high 2020-03-09T00:00:00
(4 years ago)
Fixed = 1.71 CVE-2020-2134
CVE-2020-2135
jenkins JENKINS:SECURITY-1754 Sandbox bypass vulnerability in `script-security` high 2020-03-09T00:00:00
(4 years ago)
Affected <= 1.72 CVE-2020-2190
jenkins JENKINS:SECURITY-1866 Stored XSS vulnerability in `script-security` medium 2020-06-03T00:00:00
(4 years ago)
Fixed = 1.73 CVE-2020-2190
jenkins JENKINS:SECURITY-1866 Stored XSS vulnerability in `script-security` medium 2020-06-03T00:00:00
(4 years ago)
Affected <= 1.74 CVE-2020-2279
jenkins JENKINS:SECURITY-2020 Sandbox bypass vulnerability in `script-security` high 2020-09-23T00:00:00
(4 years ago)
Fixed = 1.75 CVE-2020-2279
jenkins JENKINS:SECURITY-2020 Sandbox bypass vulnerability in `script-security` high 2020-09-23T00:00:00
(4 years ago)
Affected <= 1158.v7c1b_73a_69a_08 CVE-2022-30946
jenkins JENKINS:SECURITY-2116 CSRF vulnerability in `script-security` medium 2022-05-17T00:00:00
(2 years ago)
Fixed = 1172.v35f6a_0b_8207e CVE-2022-30946
jenkins JENKINS:SECURITY-2116 CSRF vulnerability in `script-security` medium 2022-05-17T00:00:00
(2 years ago)
Affected <= 1189.vb_a_b_7c8fd5fde CVE-2022-45379
jenkins JENKINS:SECURITY-2564 Whole-script approval in `script-security` vulnerable to SHA-1 collisions high 2022-11-15T00:00:00
(22 months ago)
Fixed = 1190.v65867a_a_47126 CVE-2022-45379
jenkins JENKINS:SECURITY-2564 Whole-script approval in `script-security` vulnerable to SHA-1 collisions high 2022-11-15T00:00:00
(22 months ago)
Affected <= 1183.v774b_0b_0a_a_451 CVE-2022-43401
jenkins JENKINS:SECURITY-2824-1 Sandbox bypass vulnerabilities in Script Security Plugin and in Pipeline: Groovy Plugin high 2022-10-19T00:00:00
(23 months ago)
Fixed = 1184.v85d16b_d851b_3 CVE-2022-43401
jenkins JENKINS:SECURITY-2824-1 Sandbox bypass vulnerabilities in Script Security Plugin and in Pipeline: Groovy Plugin high 2022-10-19T00:00:00
(23 months ago)
Affected <= 1228.vd93135a_2fb_25 CVE-2023-24422
jenkins JENKINS:SECURITY-3016 Sandbox bypass vulnerability in `script-security` high 2023-01-24T00:00:00
(20 months ago)
Fixed = 1229.v4880b_b_e905a_6 CVE-2023-24422
jenkins JENKINS:SECURITY-3016 Sandbox bypass vulnerability in `script-security` high 2023-01-24T00:00:00
(20 months ago)
Affected <= 1335.vf07d9ce377a_e CVE-2024-34144
CVE-2024-34145
jenkins JENKINS:SECURITY-3341 Multiple sandbox bypass vulnerabilities in `script-security` high 2024-05-02T00:00:00
(4 months ago)
Fixed = 1336.vf33a_a_9863911 CVE-2024-34144
CVE-2024-34145
jenkins JENKINS:SECURITY-3341 Multiple sandbox bypass vulnerabilities in `script-security` high 2024-05-02T00:00:00
(4 months ago)
Affected < 1184.v85d16b CVE-2022-43404
maven MAVEN:GHSA-27RF-8MJP-R363 Sandbox bypass vulnerabilities in Jenkins Script Security Plugin and in Pipeline: Groovy Plugin high 2022-10-19T19:00:21
(23 months ago)
Fixed = 1184.v85d16b_d851b_3 CVE-2022-43404
maven MAVEN:GHSA-27RF-8MJP-R363 Sandbox bypass vulnerabilities in Jenkins Script Security Plugin and in Pipeline: Groovy Plugin high 2022-10-19T19:00:21
(23 months ago)
Affected < 1336.vf33a CVE-2024-34145
maven MAVEN:GHSA-2G4Q-9VM9-9FW4 Jenkins Script Security Plugin sandbox bypass vulnerability moderate 2024-05-02T15:30:35
(4 months ago)
Fixed = 1336.vf33a CVE-2024-34145
maven MAVEN:GHSA-2G4Q-9VM9-9FW4 Jenkins Script Security Plugin sandbox bypass vulnerability moderate 2024-05-02T15:30:35
(4 months ago)
Affected < 1.56 CVE-2019-1003040
maven MAVEN:GHSA-3PV3-JJ4H-P528 Sandbox bypass vulnerability in Jenkins Script Security Plugin critical 2022-05-13T01:15:09
(2 years ago)
Fixed = 1.56 CVE-2019-1003040
maven MAVEN:GHSA-3PV3-JJ4H-P528 Sandbox bypass vulnerability in Jenkins Script Security Plugin critical 2022-05-13T01:15:09
(2 years ago)
Affected <= 1.67 CVE-2019-16538
maven MAVEN:GHSA-62PM-MGRH-7P69 Incorrect Authorization in Jenkins Script Security Plugin high 2022-05-24T17:01:40
(2 years ago)
Fixed = 1.68 CVE-2019-16538
maven MAVEN:GHSA-62PM-MGRH-7P69 Incorrect Authorization in Jenkins Script Security Plugin high 2022-05-24T17:01:40
(2 years ago)
Affected <= 1.49 CVE-2019-1003001
maven MAVEN:GHSA-6Q78-6XVR-26FG Jenkins Groovy Plugin sandbox bypass vulnerability high 2022-05-13T01:15:20
(2 years ago)
Fixed = 1.50 CVE-2019-1003001
maven MAVEN:GHSA-6Q78-6XVR-26FG Jenkins Groovy Plugin sandbox bypass vulnerability high 2022-05-13T01:15:20
(2 years ago)
Affected <= 1.64 CVE-2019-10431
maven MAVEN:GHSA-72GX-QQ2M-6XR2 Improper Control of Generation of Code in Jenkins Script Security Plugin critical 2022-05-24T16:57:28
(2 years ago)
Fixed = 1.65 CVE-2019-10431
maven MAVEN:GHSA-72GX-QQ2M-6XR2 Improper Control of Generation of Code in Jenkins Script Security Plugin critical 2022-05-24T16:57:28
(2 years ago)
Affected <= 1.62 CVE-2019-10400
maven MAVEN:GHSA-76Q7-R3G4-WVM4 Sandbox bypass vulnerability in Jenkins Script Security Plugin moderate 2022-05-24T16:55:59
(2 years ago)
Fixed = 1.63 CVE-2019-10400
maven MAVEN:GHSA-76Q7-R3G4-WVM4 Sandbox bypass vulnerability in Jenkins Script Security Plugin moderate 2022-05-24T16:55:59
(2 years ago)
Affected < 1229.v4880b CVE-2023-24422
maven MAVEN:GHSA-76QJ-9GWH-PVV3 Sandbox bypass in Jenkins Script Security Plugin high 2023-01-26T21:30:19
(19 months ago)
Fixed = 1229.v4880b CVE-2023-24422
maven MAVEN:GHSA-76QJ-9GWH-PVV3 Sandbox bypass in Jenkins Script Security Plugin high 2023-01-26T21:30:19
(19 months ago)
Affected <= 1.49 CVE-2019-1003000
maven MAVEN:GHSA-784J-H234-M56X Protection Mechanism Failure in Jenkins Script Security Plugin high 2022-05-13T01:15:19
(2 years ago)
Fixed = 1.50 CVE-2019-1003000
maven MAVEN:GHSA-784J-H234-M56X Protection Mechanism Failure in Jenkins Script Security Plugin high 2022-05-13T01:15:19
(2 years ago)
Affected < 1184.v85d16b CVE-2022-43401
maven MAVEN:GHSA-7VR5-72W7-Q6JC Sandbox bypass vulnerabilities in Jenkins Script Security Plugin and in Pipeline: Groovy Plugin high 2022-10-19T19:00:21
(23 months ago)
Fixed = 1184.v85d16b_d851b_3 CVE-2022-43401
maven MAVEN:GHSA-7VR5-72W7-Q6JC Sandbox bypass vulnerabilities in Jenkins Script Security Plugin and in Pipeline: Groovy Plugin high 2022-10-19T19:00:21
(23 months ago)
Affected <= 1.62 CVE-2019-10393
maven MAVEN:GHSA-9FP8-64XF-W957 Sandbox bypass vulnerability in Script Security Plugin moderate 2022-05-24T16:55:58
(2 years ago)
Fixed = 1.63 CVE-2019-10393
maven MAVEN:GHSA-9FP8-64XF-W957 Sandbox bypass vulnerability in Script Security Plugin moderate 2022-05-24T16:55:58
(2 years ago)
Affected < 1.66.5 >= 1.67, < 1.75 CVE-2020-2279
maven MAVEN:GHSA-CCR8-4XR7-CGJ3 Sandbox bypass vulnerability in Jenkins Script Security Plugin critical 2022-05-24T17:29:16
(2 years ago)
Fixed = 1.66.5 = 1.75 CVE-2020-2279
maven MAVEN:GHSA-CCR8-4XR7-CGJ3 Sandbox bypass vulnerability in Jenkins Script Security Plugin critical 2022-05-24T17:29:16
(2 years ago)
Affected < 1184.v85d16b CVE-2022-43403
maven MAVEN:GHSA-F6MQ-6FX5-W2CH Jenkins Script Security Plugin sandbox bypass vulnerability critical 2022-10-19T19:00:21
(23 months ago)
Fixed = 1184.v85d16b_d851b_3 CVE-2022-43403
maven MAVEN:GHSA-F6MQ-6FX5-W2CH Jenkins Script Security Plugin sandbox bypass vulnerability critical 2022-10-19T19:00:21
(23 months ago)
Affected <= 1189.vb CVE-2022-45379
maven MAVEN:GHSA-FV42-MX39-6FPW Whole-script approval in Jenkins Script Security Plugin vulnerable to SHA-1 collisions high 2022-11-16T12:00:22
(22 months ago)
Fixed = 1190.v65867a_a_47126 CVE-2022-45379
maven MAVEN:GHSA-FV42-MX39-6FPW Whole-script approval in Jenkins Script Security Plugin vulnerable to SHA-1 collisions high 2022-11-16T12:00:22
(22 months ago)
Affected < 1.7.1 CVE-2020-2134
maven MAVEN:GHSA-GJ3Q-P8CM-26RM Sandbox bypass vulnerability in Script Security Plugin high 2022-05-24T17:10:27
(2 years ago)
Fixed = 1.7.1 CVE-2020-2134
maven MAVEN:GHSA-GJ3Q-P8CM-26RM Sandbox bypass vulnerability in Script Security Plugin high 2022-05-24T17:10:27
(2 years ago)
Affected < 1.48 CVE-2018-1000866
maven MAVEN:GHSA-GQHM-4H93-RRHG Jenkins Script Security and Pipeline Groovy Plugins Sandbox Bypass high 2022-05-13T01:48:40
(2 years ago)
Fixed = 1.48 CVE-2018-1000866
maven MAVEN:GHSA-GQHM-4H93-RRHG Jenkins Script Security and Pipeline Groovy Plugins Sandbox Bypass high 2022-05-13T01:48:40
(2 years ago)
Affected <= 1.30 CVE-2017-1000107
maven MAVEN:GHSA-H7RX-R733-7X7R Sandbox bypass in Jenkins Script Security Plugin sandbox bypass high 2022-05-13T01:40:57
(2 years ago)
Fixed = 1.31 CVE-2017-1000107
maven MAVEN:GHSA-H7RX-R733-7X7R Sandbox bypass in Jenkins Script Security Plugin sandbox bypass high 2022-05-13T01:40:57
(2 years ago)
Affected <= 1.62 CVE-2019-10394
maven MAVEN:GHSA-HVMX-5HV4-F235 Sandbox bypass vulnerability in Jenkins Script Security Plugin moderate 2022-05-24T16:55:59
(2 years ago)
Fixed = 1.63 CVE-2019-10394
maven MAVEN:GHSA-HVMX-5HV4-F235 Sandbox bypass vulnerability in Jenkins Script Security Plugin moderate 2022-05-24T16:55:59
(2 years ago)
Affected <= 1.52 CVE-2019-1003024
maven MAVEN:GHSA-JGPM-2862-Q5M8 Jenkins Script Security Plugin sandbox bypass vulnerability high 2022-05-13T01:15:21
(2 years ago)
Fixed = 1.53 CVE-2019-1003024
maven MAVEN:GHSA-JGPM-2862-Q5M8 Jenkins Script Security Plugin sandbox bypass vulnerability high 2022-05-13T01:15:21
(2 years ago)
Affected <= 1.62 CVE-2019-10399
maven MAVEN:GHSA-M26F-W3H5-62FJ Sandbox bypass vulnerability in Jenkins Script Security Plugin moderate 2022-05-24T16:55:59
(2 years ago)
Fixed = 1.63 CVE-2019-10399
maven MAVEN:GHSA-M26F-W3H5-62FJ Sandbox bypass vulnerability in Jenkins Script Security Plugin moderate 2022-05-24T16:55:59
(2 years ago)
Affected <= 1.29 CVE-2017-1000095
maven MAVEN:GHSA-M68X-CC2F-GR5H Unsafe methods in the default list of approved signatures in Jenkins Script Security Plugin moderate 2022-05-13T01:40:54
(2 years ago)
Fixed = 1.29.1 CVE-2017-1000095
maven MAVEN:GHSA-M68X-CC2F-GR5H Unsafe methods in the default list of approved signatures in Jenkins Script Security Plugin moderate 2022-05-13T01:40:54
(2 years ago)
Affected <= 1.47 CVE-2018-1000865
maven MAVEN:GHSA-P4P5-3V2J-W5RV Improper Privilege Management in Jenkins high 2022-05-13T01:48:40
(2 years ago)
Fixed = 1.48 CVE-2018-1000865
maven MAVEN:GHSA-P4P5-3V2J-W5RV Improper Privilege Management in Jenkins high 2022-05-13T01:48:40
(2 years ago)
Affected <= 1.61 CVE-2019-10355
maven MAVEN:GHSA-P56J-X44H-G66J Incorrect Privilege Assignment in Jenkins Script Security Plugin high 2022-05-24T16:51:50
(2 years ago)
Fixed = 1.62 CVE-2019-10355
maven MAVEN:GHSA-P56J-X44H-G66J Incorrect Privilege Assignment in Jenkins Script Security Plugin high 2022-05-24T16:51:50
(2 years ago)
Affected <= 1.72 CVE-2020-2190
maven MAVEN:GHSA-Q87G-7MP5-765Q Improper Neutralization of Input During Web Page Generation in Jenkins Script Security Plugin moderate 2022-05-24T17:19:04
(2 years ago)
Fixed = 1.73 CVE-2020-2190
maven MAVEN:GHSA-Q87G-7MP5-765Q Improper Neutralization of Input During Web Page Generation in Jenkins Script Security Plugin moderate 2022-05-24T17:19:04
(2 years ago)
Affected <= 1.70 CVE-2020-2135
maven MAVEN:GHSA-QVHF-3567-PC4V Sandbox bypass vulnerability in Script Security Plugin high 2022-05-24T17:10:27
(2 years ago)
Fixed = 1.71 CVE-2020-2135
maven MAVEN:GHSA-QVHF-3567-PC4V Sandbox bypass vulnerability in Script Security Plugin high 2022-05-24T17:10:27
(2 years ago)
Affected <= 1.69 CVE-2020-2110
maven MAVEN:GHSA-QVMF-36H5-3F5V Improper Input Validation in Jenkins Script Security Plugin high 2022-05-24T17:08:45
(2 years ago)
Fixed = 1.70 CVE-2020-2110
maven MAVEN:GHSA-QVMF-36H5-3F5V Improper Input Validation in Jenkins Script Security Plugin high 2022-05-24T17:08:45
(2 years ago)
Affected <= 1158.v7c1b CVE-2022-30946
maven MAVEN:GHSA-QWGX-MRV5-87J8 CSRF vulnerability in Jenkins Script Security Plugin moderate 2022-05-18T00:00:39
(2 years ago)
Fixed = 1172.v35f6a CVE-2022-30946
maven MAVEN:GHSA-QWGX-MRV5-87J8 CSRF vulnerability in Jenkins Script Security Plugin moderate 2022-05-18T00:00:39
(2 years ago)
Affected <= 1.36 CVE-2017-1000505
maven MAVEN:GHSA-R9JF-HF9X-7HRV Exposure of Sensitive Information to an Unauthorized Actor Jenkins Script Security Plugin moderate 2022-05-14T03:45:23
(2 years ago)
Fixed = 1.37 CVE-2017-1000505
maven MAVEN:GHSA-R9JF-HF9X-7HRV Exposure of Sensitive Information to an Unauthorized Actor Jenkins Script Security Plugin moderate 2022-05-14T03:45:23
(2 years ago)
Affected < 1336.vf33a CVE-2024-34144
maven MAVEN:GHSA-V63G-V339-2673 Jenkins Script Security Plugin has sandbox bypass vulnerability involving crafted constructor bodies high 2024-05-02T15:30:35
(4 months ago)
Fixed = 1336.vf33a CVE-2024-34144
maven MAVEN:GHSA-V63G-V339-2673 Jenkins Script Security Plugin has sandbox bypass vulnerability involving crafted constructor bodies high 2024-05-02T15:30:35
(4 months ago)
Affected <= 1.61 CVE-2019-10356
maven MAVEN:GHSA-X25X-J4W4-7M59 Return of Pointer Value Outside of Expected Rang in Jenkins Script Security Plugin high 2022-05-24T16:51:50
(2 years ago)
Fixed = 1.62 CVE-2019-10356
maven MAVEN:GHSA-X25X-J4W4-7M59 Return of Pointer Value Outside of Expected Rang in Jenkins Script Security Plugin high 2022-05-24T16:51:50
(2 years ago)
Affected < 1.51 CVE-2019-1003005
maven MAVEN:GHSA-X5JM-RJ37-5QH7 Sandbox Bypass in Script Security Plugin high 2022-05-13T01:00:55
(2 years ago)
Fixed = 1.51 CVE-2019-1003005
maven MAVEN:GHSA-X5JM-RJ37-5QH7 Sandbox Bypass in Script Security Plugin high 2022-05-13T01:00:55
(2 years ago)
Affected < 1.54 CVE-2019-1003029
maven MAVEN:GHSA-XVXQ-HQ48-XPHM Sandbox bypass in Script Security Plugin critical 2022-05-13T01:00:55
(2 years ago)
Fixed = 1.54 CVE-2019-1003029
maven MAVEN:GHSA-XVXQ-HQ48-XPHM Sandbox bypass in Script Security Plugin critical 2022-05-13T01:00:55
(2 years ago)
Loading...