VDB
CVE-2022-25176
CVE-2022-25176
PUBLISHED
CVSS 6.5 MEDIUM
Improper Link Resolution Before File Access in Jenkins Pipeline: Groovy Plugin
EPSS 1.74% · 76.9th percentile
Risk Scores
CVSS 3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
1.74%
76.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| jenkins | pipeline\ | * |
| Maven | org.jenkins-ci.plugins.workflow:workflow-cps | 2.93, 0, 2.95 |
| Jenkins project | Jenkins Pipeline: Groovy Plugin | unspecified, 2.94.1, 2.92.1 |
Timeline
- Feb 15, 2022 CVE Published
- Feb 16, 2022 EPSS Score
- Apr 10, 2022 EPSS Score
- Jun 1, 2022 EPSS Score
- Jul 25, 2022 EPSS Score
- Sep 15, 2022 EPSS Score
- Dec 30, 2022 EPSS Score
- Feb 20, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 14, 2023 EPSS Score
- Jun 5, 2023 EPSS Score
- Jul 28, 2023 EPSS Score