Jenkins
PipelinesOpen-source automation server for building, testing, and deploying software projects
Features
- Automates project builds
- Runs tests to catch bugs early
- Performs static code analysis
- Handles deployments
Security Response History
5 CVEs| CVE | Severity | Disclosed | Patched (this tool) | vs Ecosystem Median |
|---|---|---|---|---|
| CVE-2017-1000353 KEV |
critical
CVSS 9.8
|
2025-10-02 | 2026-01-06 | 3mo / median 3mo |
| CVE-2024-23897 KEV |
critical
CVSS 9.8
|
2024-08-19 | 2026-01-06 | 1y 5mo / median 1y 5mo |
| CVE-2015-5317 KEV |
high
CVSS 7.5
|
2023-05-12 | 2026-01-06 | 2y 8mo / median 2y 8mo |
| CVE-2021-39144 KEV |
high
CVSS 8.5
|
2023-03-10 | 2026-01-06 | 2y 10mo / median 2y 10mo |
| CVE-2018-1000861 KEV |
critical
CVSS 9.8
|
2022-02-10 | 2026-01-06 | 3y 11mo / median 3y 11mo |
Recent releases
View all 26 releases →Job name restoration
- Scrollbar color now derives from secondary text color
- Manage Jenkins System page content refined
Full changelog
This is an automatically generated changelog draft for Jenkins weekly releases.
See https://www.jenkins.io/changelog/2.563/ for the official changelog for this release.
🚀 New features and improvements
- Make scrollbar color derive from secondary text color (#26735) @janfaracik
- Use variable for
jenkins-not-applicableclass (#26728) @janfaracik - Refine Manage Jenkins' System page content (#26679) @janfaracik
- Update bundled script-security to 1402, matrix-auth to 3.2.10 (#26719) @daniel-beck
🐛 Bug fixes
- fix: prevent long parameter values from overflowing the parameters dialog (#26574) @Anexus5919
- Stop saving
Runs inOldDataMonitor(#26711) @jglick
🌐 Localization and translation
- Refine Manage Jenkins' System page content (#26679) @janfaracik
📦 Dependency updates
- Update bundled script-security to 1402, matrix-auth to 3.2.10 (#26719) @daniel-beck
All contributors: @Anexus5919, @daniel-beck, @janfaracik, @jenkins-release-bot, @jglick, @renovate[bot] and renovate[bot]
Minor fixes and improvements.
Full changelog
This is an automatically generated changelog draft for Jenkins weekly releases.
See https://www.jenkins.io/changelog/2.561/ for the official changelog for this release.
🐛 Bug fixes
- Fix triggering pipeline with parameters (#26685) @timja
All contributors: @jenkins-release-bot and @timja
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.