VDB
CVE-2022-25176
CVE-2022-25176
PUBLISHED
CVSS 6.5 MEDIUM
Improper Link Resolution Before File Access in Jenkins Pipeline: Groovy Plugin
EPSS 0.64% · 71.0th percentile
Risk Scores
CVSS 3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.64%
71.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| jenkins | pipeline\ | * |
| Maven | org.jenkins-ci.plugins.workflow:workflow-cps | 2.93, 0, 2.95 |
| Jenkins project | Jenkins Pipeline: Groovy Plugin | unspecified, 2.94.1, 2.92.1 |
Exploit Intelligence
Timeline
- Feb 15, 2022 CVE Published
- Feb 16, 2022 EPSS Score
- Apr 9, 2022 EPSS Score
- May 31, 2022 EPSS Score
- Jul 24, 2022 EPSS Score
- Sep 14, 2022 EPSS Score
- Nov 5, 2022 EPSS Score
- Dec 27, 2022 EPSS Score
- Feb 17, 2023 EPSS Score
- Apr 10, 2023 EPSS Score
- Jun 2, 2023 EPSS Score
- Jul 24, 2023 EPSS Score