Skip to content

Jenkins

Pipelines

Open-source automation server for building, testing, and deploying software projects

Java Latest jenkins-2.565 · 14d ago Security brief →

Features

  • Automates project builds
  • Runs tests to catch bugs early
  • Performs static code analysis
  • Handles deployments

Security Response History

5 CVEs
CVE Severity Disclosed Patched (this tool) vs Ecosystem Median
CVE-2017-1000353 KEV critical
CVSS 9.8
2025-10-02 2026-01-06 3mo / median 3mo
CVE-2024-23897 KEV critical
CVSS 9.8
2024-08-19 2026-01-06 1y 5mo / median 1y 5mo
CVE-2015-5317 KEV high
CVSS 7.5
2023-05-12 2026-01-06 2y 8mo / median 2y 8mo
CVE-2021-39144 KEV high
CVSS 8.5
2023-03-10 2026-01-06 2y 10mo / median 2y 10mo
CVE-2018-1000861 KEV critical
CVSS 9.8
2022-02-10 2026-01-06 3y 11mo / median 3y 11mo

Recent releases

View all 26 releases →
No immediate action
jenkins-2.565 Bug fix

Race condition fixed

No immediate action
jenkins-2.555.2 Breaking risk

Breaking changes — review before upgrading.

No immediate action
jenkins-2.564 Bug fix

Job name restoration

patches CVE-2015-5317 patches CVE-2017-1000353 patches CVE-2018-1000861 +2 more
Open
jenkins-2.563 Bug fix
Notable features
  • Scrollbar color now derives from secondary text color
  • Manage Jenkins System page content refined
Full changelog

This is an automatically generated changelog draft for Jenkins weekly releases.
See https://www.jenkins.io/changelog/2.563/ for the official changelog for this release.

🚀 New features and improvements

  • Make scrollbar color derive from secondary text color (#26735) @janfaracik
  • Use variable for jenkins-not-applicable class (#26728) @janfaracik
  • Refine Manage Jenkins' System page content (#26679) @janfaracik
  • Update bundled script-security to 1402, matrix-auth to 3.2.10 (#26719) @daniel-beck

🐛 Bug fixes

  • fix: prevent long parameter values from overflowing the parameters dialog (#26574) @Anexus5919
  • Stop saving Runs in OldDataMonitor (#26711) @jglick

🌐 Localization and translation

  • Refine Manage Jenkins' System page content (#26679) @janfaracik

📦 Dependency updates

  • Update bundled script-security to 1402, matrix-auth to 3.2.10 (#26719) @daniel-beck

All contributors: @Anexus5919, @daniel-beck, @janfaracik, @jenkins-release-bot, @jglick, @renovate[bot] and renovate[bot]

jenkins-2.561 Bug fix

Minor fixes and improvements.

Full changelog

This is an automatically generated changelog draft for Jenkins weekly releases.
See https://www.jenkins.io/changelog/2.561/ for the official changelog for this release.

🐛 Bug fixes

  • Fix triggering pipeline with parameters (#26685) @timja

All contributors: @jenkins-release-bot and @timja

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
25,315
Forks
9,497
Languages
Java HTML JavaScript

Install & Platforms

Install via
docker binary
Platforms
linux macos windows

Community & Support

Open source alternatives

Beta — feedback welcome: [email protected]