Evidence-linked product lifecycle intelligenceSUPPORT · SECURITY · RETIREMENT
← Search results
CVE-LINKED INVENTORY10 SECURITY RECORDS

Jenkins project

Jenkins Pipeline: Groovy Plugin

Affected and fixed version statements observed in the public BlackTree CVE catalogue. These statements describe vulnerability scope, not publisher support entitlement.

Lifecycle evidence status

This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.

A missing support date does not mean the product is supported. CVE publication dates and affected-version ranges must not be interpreted as EOL dates.

CVE-observed version history

CVEPublishedAffected versionsFixed version informationPublisher evidence
CVE-2026-57284 24 Jun 2026 ≤ 4331.v9d06ed4658ff No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-57283 24 Jun 2026 ≤ 4331.v9d06ed4658ff No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-52550 13 Nov 2024 ≤ 3975.v567e2a_1ffa_22; 3990.vd281dd77a_388 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2022-43402 19 Oct 2022 unspecified ≤ 2802.v5ea_628154b_c2 2759.2761.vd6e8d2a_15980; 2746.2748.v365128b_c26d7 Update reference ↗
CVE-2022-30945 17 May 2022 unspecified ≤ 2689.v434009a_31b_f1 2683.2687.vb_0cc3f973f06; 2.94.4 Update reference ↗
CVE-2022-25180 15 Feb 2022 unspecified ≤ 2648.va9433432b33c 2.94.1; 2.92.1 Update reference ↗
CVE-2022-25176 15 Feb 2022 unspecified ≤ 2648.va9433432b33c 2.94.1; 2.92.1 Update reference ↗
CVE-2022-25173 15 Feb 2022 unspecified ≤ 2648.va9433432b33c 2.94.1; 2.92.1 Update reference ↗
CVE-2020-2109 12 Feb 2020 unspecified ≤ 2.78 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-1003041 28 Mar 2019 2.64 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record

How this record is maintained

The CVE inventory is reconciled automatically from cve.blacktree.nl. Exact identity matches link to existing Lifecycle product or package histories. Unmatched products stay in a prioritised publisher-source research queue, and Lifecycle marks the date gap instead of inferring a support boundary from vulnerability data.