Jenkins security advisory

35 views
Skip to first unread message

Daniel Beck

unread,
Jun 22, 2022, 10:11:23 AM6/22/22
to Jenkins Advisories
The following Jenkins updates contain fixes for security vulnerabilities:

* Jenkins 2.356
* Jenkins LTS 2.332.4 and 2.346.1

The following Jenkins plugin updates contain fixes for security vulnerabilities:

* Embeddable Build Status Plugin 2.0.4
* Hidden Parameter Plugin 0.0.5
* JUnit Plugin 1119.1121.vc43d0fc45561
* Nested View Plugin 1.26
* Pipeline: Input Step Plugin 449.v77f0e8b_845c4
* REST List Parameter Plugin 1.6.0
* xUnit Plugin 3.1.0

Additionally, we announce unresolved security issues in the following plugins:

* Agent Server Parameter Plugin
* Beaker builder Plugin
* Convertigo Mobile Platform Plugin
* CRX Content Package Deployer Plugin
* Date Parameter Plugin
* Dynamic Extended Choice Parameter Plugin
* EasyQA Plugin
* Filesystem List Parameter Plugin
* Image Tag Parameter Plugin
* Jianliao Notification Plugin
* Maven Metadata Plugin for Jenkins CI server Plugin
* NS-ND Integration Performance Publisher Plugin
* ontrack Jenkins Plugin
* Package Version Plugin
* Readonly Parameter Plugin
* Repository Connector Plugin
* Sauce OnDemand Plugin
* Squash TM Publisher (Squash4Jenkins) Plugin
* Stash Branch Parameter Plugin
* ThreadFix Plugin
* vRealize Orchestrator Plugin

Please see the advisory for more information:
https://www.jenkins.io/security/advisory/2022-06-22/

Reply all
Reply to author
Forward
0 new messages