VYPR

Maven package

org.jenkins-ci.plugins/parameterized-trigger

pkg:maven/org.jenkins-ci.plugins/parameterized-trigger

Vulnerabilities (2)

  • CVE-2022-27195Mar 15, 2022
    affected < 2.43.1fixed 2.43.1

    Jenkins Parameterized Trigger Plugin 2.43 and earlier captures environment variables passed to builds triggered using Jenkins Parameterized Trigger Plugin, including password parameter values, in their `build.xml` files. These values are stored unencrypted and can be viewed by us

  • CVE-2017-1000084MedOct 5, 2017
    affected < 2.35.1fixed 2.35.1

    Parameterized Trigger Plugin fails to check Item/Build permission: The Parameterized Trigger Plugin did not check the build authentication it was running as and allowed triggering any other project in Jenkins.