Jenkins microsoft entra id (previously azure ad) plugin
This hub aggregates every CVE we track for Jenkins microsoft entra id (previously azure ad) plugin, a product in the devtools ci space. Use it to gauge the current risk picture and drill into individual advisories.
2
CVEs tracked
0
Critical
1
High
0
In CISA KEV
Severity distribution
HIGH1MEDIUM1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
0
0
0
1
2024-102026-09
Latest CVEs
The 2 most recently published vulnerabilities affecting Jenkins microsoft entra id (previously azure ad) plugin.
- CVE-2026-84672Jenkins Microsoft Entra ID (previously Azure AD) Plugin 710.v0b_ff8e9cc2d2 and earlier grants Entra group permissions using both the group's unique object ID and its display name, allowing attacker...8.8
- CVE-2026-42525Jenkins Microsoft Entra ID (previously Azure AD) Plugin 666.v6060de32f87d and earlier does not restrict the redirect URL after login, allowing attackers to perform phishing attacks.4.3
Product normalization is registry-driven with AI assist and human review. How it works