2022 CVE Vulnerabilities

27,541 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-36910MEDIUM5.4Jenkins Lucene-Search Plugin 370.v62a5f618cd3a and earlier does not perform a permission check in several HTTP endpoints...
CVE-2022-36909MEDIUM6.5A missing permission check in Jenkins OpenShift Deployer Plugin 1.2.0 and earlier allows attackers with Overall/Read per...
CVE-2022-36908MEDIUM6.5A cross-site request forgery (CSRF) vulnerability in Jenkins OpenShift Deployer Plugin 1.2.0 and earlier allows attacker...
CVE-2022-36907MEDIUM6.5A missing permission check in Jenkins OpenShift Deployer Plugin 1.2.0 and earlier allows attackers with Overall/Read per...
CVE-2022-36906MEDIUM6.5A cross-site request forgery (CSRF) vulnerability in Jenkins OpenShift Deployer Plugin 1.2.0 and earlier allows attacker...
CVE-2022-36905MEDIUM5.4Jenkins Maven Metadata Plugin for Jenkins CI server Plugin 2.2 and earlier does not perform URL validation for the Repos...
CVE-2022-36904MEDIUM4.3Jenkins Repository Connector Plugin 2.2.0 and earlier does not perform a permission check in a method implementing form ...
CVE-2022-36903MEDIUM4.3A missing permission check in Jenkins Repository Connector Plugin 2.2.0 and earlier allows attackers with Overall/Read p...
CVE-2022-36902MEDIUM5.4Jenkins Dynamic Extended Choice Parameter Plugin 1.0.1 and earlier does not escape several fields of Moded Extended Choi...
CVE-2022-36901MEDIUM6.5Jenkins HTTP Request Plugin 1.15 and earlier stores HTTP Request passwords unencrypted in its global configuration file ...
CVE-2022-36900HIGH8.2Jenkins Compuware zAdviser API Plugin 1.0.3 and earlier does not restrict execution of a controller/agent message to age...
CVE-2022-36899HIGH8.2Jenkins Compuware ISPW Operations Plugin 1.0.8 and earlier does not restrict execution of a controller/agent message to ...
CVE-2022-36898MEDIUM4.3A missing permission check in Jenkins Compuware ISPW Operations Plugin 1.0.8 and earlier allows attackers with Overall/R...
CVE-2022-36897MEDIUM4.3A missing permission check in Jenkins Compuware Xpediter Code Coverage Plugin 1.0.7 and earlier allows attackers with Ov...
CVE-2022-36896MEDIUM6.5A missing permission check in Jenkins Compuware Source Code Download for Endevor, PDS, and ISPW Plugin 2.0.12 and earlie...
CVE-2022-36895MEDIUM4.3A missing permission check in Jenkins Compuware Topaz Utilities Plugin 1.0.8 and earlier allows attackers with Overall/R...
CVE-2022-36894MEDIUM6.5An arbitrary file write vulnerability in Jenkins CLIF Performance Testing Plugin 64.vc0d66de1dfb_f and earlier allows at...
CVE-2022-36893MEDIUM4.3Jenkins rpmsign-plugin Plugin 0.5.0 and earlier does not perform a permission check in a method implementing form valida...
CVE-2022-36892MEDIUM4.3Jenkins rhnpush-plugin Plugin 0.5.1 and earlier does not perform a permission check in a method implementing form valida...
CVE-2022-36891MEDIUM4.3A missing permission check in Jenkins Deployer Framework Plugin 85.v1d1888e8c021 and earlier allows attackers with Item/...
CVE-2022-36890MEDIUM4.3Jenkins Deployer Framework Plugin 85.v1d1888e8c021 and earlier does not restrict the name of files in methods implementi...
CVE-2022-36889HIGH8.8Jenkins Deployer Framework Plugin 85.v1d1888e8c021 and earlier does not restrict the application path of the application...
CVE-2022-36888MEDIUM6.5A missing permission check in Jenkins HashiCorp Vault Plugin 354.vdb_858fd6b_f48 and earlier allows attackers with Overa...
CVE-2022-36887MEDIUM4.3A cross-site request forgery (CSRF) vulnerability in Jenkins Job Configuration History Plugin 1155.v28a_46a_cc06a_5 and ...
CVE-2022-36886MEDIUM4.3A cross-site request forgery (CSRF) vulnerability in Jenkins External Monitor Job Type Plugin 191.v363d0d1efdf8 and earl...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now