CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2021-21701

unknowncovered by 1 sourcefirst seen 2021-11-12
Affects plugin: Active Choices Affects plugin: OWASP Dependency-Check Affects plugin: Performance Affects plugin: pom2config Affects plugin: Scriptler Affects plugin: Squash TM Publisher (Squash4Jenkins)

CSIRTS triage

What
Multiple plugins in Jenkins have vulnerabilities that could potentially be exploited.
Who is affected
Deployments of Jenkins and the listed plugins are affected.
Urgency
Remediation is necessary as vulnerabilities exist, although exploitation status is currently unknown.
Action
Update to the latest versions of Jenkins and the affected plugins.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2021-21701

Get an email if CVE-2021-21701 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2021-21701

CVE.org record

Embed the live status

CVE-2021-21701 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2021-21701 status](https://www.csirts.com/badge/CVE-2021-21701)](https://www.csirts.com/cve/CVE-2021-21701)