VendorsJenkinssimple_queueany version
Vulnerabilities

Jenkins Simple any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2024-54003
Jenkins Simple Queue Plugin 1.4.4 and earlier does not escape the view name, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with View/Create permission.
Published 2024-11-27 · Analyzed
8.0EPSS 0.796
CVE-2025-31723
A cross-site request forgery (CSRF) vulnerability in Jenkins Simple Queue Plugin 1.4.6 and earlier allows attackers to change and reset the build queue order.
Published 2025-04-02 · Analyzed
4.3EPSS 0.003