Vulnerabilities > Cloudbees

DATE CVE VULNERABILITY TITLE RISK
2020-02-24 CVE-2012-0785 Resource Exhaustion vulnerability in multiple products
Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by CloudBees 1.424.x before 1.424.2.1 and 1.400.x before 1.400.0.11 could allow remote attackers to cause a considerable CPU load, aka "the Hash DoS attack."
network
low complexity
cloudbees jenkins CWE-400
7.5
2019-04-19 CVE-2019-11350 Insufficiently Protected Credentials vulnerability in Cloudbees Jenkins Operations Center 2.150.2.3
CloudBees Jenkins Operations Center 2.150.2.3, when an expired trial license exists, allows Cleartext Password Storage and Retrieval via the proxy configuration page.
network
low complexity
cloudbees CWE-522
critical
9.8