Re: [oss-security] Multiple vulnerabilities in Jenkins plugins

2025-10-31 Thread Solar Designer
On Wed, Oct 29, 2025 at 04:19:55PM +0100, Sebastian Pipping wrote: > On 10/29/25 14:03, Daniel Beck wrote: > >Additionally, we announce unresolved security issues in the following > >plugins: > > > >* Azure CLI Plugin > >* ByteGuard Build Actions Plugin > >* Curseforge Publisher Plugin > >* Eggplan

Re: [oss-security] Multiple vulnerabilities in Jenkins plugins

2025-10-29 Thread Sebastian Pipping
Hi! On 10/29/25 14:03, Daniel Beck wrote: Additionally, we announce unresolved security issues in the following plugins: * Azure CLI Plugin * ByteGuard Build Actions Plugin * Curseforge Publisher Plugin * Eggplant Runner Plugin * Extensible Choice Parameter Plugin * JDepend Plugin * Nexus Task

[oss-security] Multiple vulnerabilities in Jenkins plugins

2025-10-29 Thread Daniel Beck
Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software. The following releases contain fixes for security vulnerabilities: * MCP Server Plugin 0.86.v7d3355e6a_a_18 * SAML Plugin 4.583.585.v22ccc1139f55 Additionally

[oss-security] Multiple vulnerabilities in Jenkins plugins

2025-09-03 Thread Kevin Guerroudj
Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software. The following releases contain fixes for security vulnerabilities: * Git client Plugin 6.3.3 * global-build-stats Plugin 347.v32a_eb_0493c4f * Jakarta Mail API

[oss-security] Multiple vulnerabilities in Jenkins plugins

2025-07-09 Thread Kevin Guerroudj
Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software. The following releases contain fixes for security vulnerabilities: * Applitools Eyes Plugin 1.16.6 * Credentials Binding Plugin 696.v256688029804 * Git Paramet

[oss-security] Multiple vulnerabilities in Jenkins plugins

2025-05-14 Thread Kevin Guerroudj
Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software. The following releases contain fixes for security vulnerabilities: * Cadence vManager Plugin 4.0.1-288.v8804b_ea_a_cb_7f * Health Advisor by CloudBees Plugin 3

[oss-security] Multiple vulnerabilities in Jenkins plugins

2025-03-19 Thread Daniel Beck
Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software. The following releases contain fixes for security vulnerabilities: * EDDSA API Plugin 0.3.0.1-16.vcb_4a_98a_3531c * Zoho QEngine Plugin 1.0.31.v4a_b_1db_6d6a_f

[oss-security] Multiple vulnerabilities in Jenkins plugins

2025-01-22 Thread Kevin Guerroudj
Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software. The following releases contain fixes for security vulnerabilities: * Bitbucket Server Integration Plugin 4.1.4 * Eiffel Broadcaster Plugin 2.10.3 * GitLab Plug

[oss-security] Multiple vulnerabilities in Jenkins plugins

2024-11-13 Thread Daniel Beck
Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software. The following releases contain fixes for security vulnerabilities: * Authorize Project Plugin 1.8.0 * IvyTrigger Plugin 1.02 * OpenId Connect Authentication Pl

[oss-security] Multiple vulnerabilities in Jenkins plugins

2024-06-26 Thread Daniel Beck
Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software. The following releases contain fixes for security vulnerabilities: * Bitbucket Branch Source Plugin 887.va_d359b_3d2d8d * Plain Credentials Plugin 183.va_de8f1

[oss-security] Multiple vulnerabilities in Jenkins plugins

2024-05-24 Thread Kevin Guerroudj
Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software. The following releases contain fixes for security vulnerabilities: * OpenText Application Automation Tools Plugin 24.1.1-beta * Team Concert Git Plugin 2.0.5

[oss-security] Multiple vulnerabilities in Jenkins plugins

2024-05-02 Thread Daniel Beck
Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software. The following releases contain fixes for security vulnerabilities: * Git server Plugin 117.veb_68868fa_027 * Script Security Plugin 1336.vf33a_a_9863911 Addit