Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
EN
中
Loading…
pkg:Maven/
org.jenkins-ci.plugins:azure-ad
6 total CVEs
HIGH
3
MEDIUM
1
LOW
2
✅ Check your installed version
Check
All known vulnerabilities
HIGH
8.8
CVE-2023-24426
Insufficient Session Expiration in Jenkins Azure AD Plugin
from 0, <= 303.va
HIGH
8.8
CVE-2021-21679
Jenkins Azure AD Plugin allows bypassing CSRF protection for any URL
from 0, < 180.v8b1e80e6f242
HIGH
7.5
CVE-2023-41935
Non-constant time nonce comparison in Jenkins Microsoft Entra ID (previously Azure AD) Plugin
>= 378.380.v545b, < 397.v907382dd9b
MEDIUM
4.3
Jenkins Microsoft Entra ID (previously Azure AD) Plugin has an open redirect vulnerability
from 0, < 667.v4c5827a
LOW
3.3
Jenkins Azure AD Plugin stored the client secret unencrypted
from 0, < 0.3.4
LOW
3.1
Client secret transmitted in plain text by Azure AD Plugin
from 0, < 1.2.0
CVE-2026-42525
CVE-2019-10318
CVE-2020-2119
Maven/org.jenkins-ci.plugins:azure-ad — 6 CVEs · VulnScope