Jenkins

Ldap

3 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Veröffentlicht 02.09.2026 15:40:49
  • Zuletzt bearbeitet 03.09.2026 17:13:16

Jenkins LDAP Plugin 807.809.vd3a_4e5e4ec98 and earlier allows connecting to a specified URL through Stapler data binding, allowing attackers to connect to an attacker-specified URL.

  • EPSS 0.28%
  • Veröffentlicht 27.05.2026 15:16:31
  • Zuletzt bearbeitet 02.06.2026 16:13:23

Jenkins LDAP Plugin 807.v7d7de30930cf and earlier follows LDAP referrals.

  • EPSS 0.26%
  • Veröffentlicht 27.05.2026 15:16:31
  • Zuletzt bearbeitet 02.06.2026 16:14:59

Jenkins LDAP Plugin 807.v7d7de30930cf and earlier deserializes data from LDAP referrals without validation.