Jenkins file parameter plugin
This hub aggregates every CVE we track for Jenkins file parameter plugin, a product in the devtools ci space. Use it to gauge the current risk picture and drill into individual advisories.
2
CVEs tracked
0
Critical
2
High
0
In CISA KEV
Severity distribution
HIGH2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
2024-102026-09
Latest CVEs
The 2 most recently published vulnerabilities affecting Jenkins file parameter plugin.
- CVE-2026-84671Jenkins File Parameter Plugin 425.v3fa_801681b_5e and earlier allows writing files to arbitrary locations on the Jenkins controller file system through Stapler data binding, which can lead to remot...8.8
- CVE-2023-32986Jenkins File Parameter Plugin 285.v757c5b_67a_c25 and earlier does not restrict the name (and resulting uploaded file name) of Stashed File Parameters, allowing attackers with Item/Configure permis...8.8
Product normalization is registry-driven with AI assist and human review. How it works