AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-34180

HIGH · CVSS 7.5 EPSS 1.14%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-06-23 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. It affects Jenkins.

CVE
CVE-2022-34180
Severity
HIGH
CVSS
7.5
EPSS
1.14%
Jenkins

Original NVD Description

Jenkins Embeddable Build Status Plugin 2.0.3 and earlier does not correctly perform the ViewStatus permission check in the HTTP endpoint it provides for "unprotected" status badge access, allowing attackers without any permissions to obtain the build status badge icon for any attacker-specified job and/or build.

Related CVEs

Other vulnerabilities affecting the same vendor(s)