Evidence-linked product lifecycle intelligenceSUPPORT · SECURITY · RETIREMENT
← Search results
CVE-LINKED INVENTORY38 SECURITY RECORDS

Jenkins project

Jenkins Script Security Plugin

Affected and fixed version statements observed in the public BlackTree CVE catalogue. These statements describe vulnerability scope, not publisher support entitlement.

Lifecycle evidence status

This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.

A missing support date does not mean the product is supported. CVE publication dates and affected-version ranges must not be interpreted as EOL dates.

CVE-observed version history

CVEPublishedAffected versionsFixed version informationPublisher evidence
CVE-2026-92129 16 Sep 2026 Jenkins Script Security Plugin: ≤ 1415.v9a_f9b_3a_c253d No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-92128 16 Sep 2026 Jenkins Script Security Plugin: ≤ 1415.v9a_f9b_3a_c253d No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-92127 16 Sep 2026 Jenkins Script Security Plugin: ≤ 1415.v9a_f9b_3a_c253d No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-92126 16 Sep 2026 Jenkins Script Security Plugin: ≤ 1415.v9a_f9b_3a_c253d No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-92125 16 Sep 2026 Jenkins Script Security Plugin: ≤ 1415.v9a_f9b_3a_c253d No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-92124 16 Sep 2026 Jenkins Script Security Plugin: ≤ 1415.v9a_f9b_3a_c253d No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-92123 16 Sep 2026 Jenkins Script Security Plugin: ≤ 1415.v9a_f9b_3a_c253d No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-92122 16 Sep 2026 Jenkins Script Security Plugin: ≤ 1415.v9a_f9b_3a_c253d No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-84659 2 Sep 2026 Jenkins Script Security Plugin: ≤ 1412.v7737b_3405f86 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-84658 2 Sep 2026 Jenkins Script Security Plugin: ≤ 1412.v7737b_3405f86 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-57281 24 Jun 2026 Jenkins Script Security Plugin: ≤ 1402.v94c9ce464861 RHSA-2026:60247: OpenShift Developer Tools and Services 4.12 Update reference ↗
CVE-2026-57280 24 Jun 2026 ≤ 1402.v94c9ce464861 It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.12 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is not available in rhel8 images. java-17-openjdk is removed. Update reference ↗
CVE-2026-42519 29 Apr 2026 ≤ 1399.ve6a_66547f6e1 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-52549 13 Nov 2024 ≤ 1362.v67dc1f0e1b_b_3; 1365.v4778ca_84b_de5; 1366.vd44b_49a_5c85c ≤ 1367.vdf2fc45f229c No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-34145 2 May 2024 ≤ 1335.vf07d9ce377a_e No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-34144 2 May 2024 ≤ 1335.vf07d9ce377a_e No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2023-24422 24 Jan 2023 unspecified ≤ 1228.vd93135a_2fb_25 1175.1180.v36a_3fb_2dec9c Update reference ↗
CVE-2022-45379 15 Nov 2022 unspecified ≤ 1189.vb_a_b_7c8fd5fde 1175.1179.vea_f7532629e1 Update reference ↗
CVE-2022-43404 19 Oct 2022 unspecified ≤ 1183.v774b_0b_0a_a_451 1175.1177.vda_175b_77d144 Update reference ↗
CVE-2022-43403 19 Oct 2022 unspecified ≤ 1183.v774b_0b_0a_a_451 1175.1177.vda_175b_77d144 Update reference ↗
CVE-2022-43401 19 Oct 2022 unspecified ≤ 1183.v774b_0b_0a_a_451 1175.1177.vda_175b_77d144 Update reference ↗
CVE-2022-30946 17 May 2022 unspecified ≤ 1158.v7c1b_73a_69a_08 1.78.1; 1145.1148.vf6d17a_a_a_eef6 Update reference ↗
CVE-2020-2279 23 Sep 2020 unspecified ≤ 1.74 1.66.5 Update reference ↗
CVE-2020-2190 3 Jun 2020 unspecified ≤ 1.72 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2020-2135 9 Mar 2020 unspecified ≤ 1.70 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2020-2134 9 Mar 2020 unspecified ≤ 1.70 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2020-2110 12 Feb 2020 unspecified ≤ 1.69 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-16538 21 Nov 2019 1.67 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-10431 1 Oct 2019 1.64 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-10400 12 Sep 2019 1.62 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-10399 12 Sep 2019 1.62 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-10394 12 Sep 2019 1.62 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-10393 12 Sep 2019 1.62 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-10356 31 Jul 2019 1.61 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-10355 31 Jul 2019 1.61 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-1003040 28 Mar 2019 1.55 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-1003024 20 Feb 2019 1.52 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2019-1003005 6 Feb 2019 1.50 and earlier No fixed version is explicitly recorded in the structured CVE data. Use CVE record

How this record is maintained

The CVE inventory is reconciled automatically from cve.blacktree.nl. Exact identity matches link to existing Lifecycle product or package histories. Unmatched products stay in a prioritised publisher-source research queue, and Lifecycle marks the date gap instead of inferring a support boundary from vulnerability data.