Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

6,776 advisories

Loading
GitHub Authentication Plugin showed plain text client secret in configuration form Moderate
CVE-2019-1003018 was published for org.jenkins-ci.plugins:github-oauth (Maven) May 13, 2022
Jenkins OpenId Connect Authentication Plugin showed plain text client secret in configuration form Moderate
CVE-2019-1003021 was published for org.jenkins-ci.plugins:oic-auth (Maven) May 13, 2022
Phusion Passenger information disclosure Moderate
CVE-2017-16355 was published for passenger (RubyGems) May 13, 2022
jhutchings1
Credited to jhutchings1
Exposure of sensitive information in Anchore Container Image Scanner Jenkins Plugin Moderate
CVE-2018-1999033 was published for org.jenkins-ci.plugins:anchore-container-scanner (Maven) May 13, 2022
westonsteimel
Credited to westonsteimel
sosreport sensitive information disclosure via weak permissions of the generated archives Moderate
CVE-2015-3171 was published for sosreport (pip) May 13, 2022
Jenkins allows Unauthorized Viewing of Queue API Information Moderate
CVE-2015-5324 was published for org.jenkins-ci.main:jenkins-core (Maven) May 13, 2022
Jenkins allows Exposure of Sensitive Information to an Unauthorized Actor Moderate
CVE-2015-5320 was published for org.jenkins-ci.main:jenkins-core (Maven) May 13, 2022
Jenkins has Information Disclosure via Sidepanel Widget Moderate
CVE-2015-5321 was published for org.jenkins-ci.main:jenkins-core (Maven) May 13, 2022
ProTip! Advisories are also available from the GraphQL API