Jenkins Orka By Macstadium
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Jenkins Orka By Macstadium.
By the Year
In 2026 there have been 0 vulnerabilities in Jenkins Orka By Macstadium. Orka By Macstadium did not have any published security vulnerabilities last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 0 | 0.00 |
| 2024 | 0 | 0.00 |
| 2023 | 4 | 6.68 |
It may take a day or so for new Orka By Macstadium vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Jenkins Orka By Macstadium Security Vulnerabilities
Jenkins Orka by MacStadium Plugin <=1.33 Perm Check Allows Credential Theft
CVE-2023-37949
7.1 - High
- July 12, 2023
A missing permission check in Jenkins Orka by MacStadium Plugin 1.33 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.
AuthZ
Missing perm checks in Jenkins Orka Plugin 1.31 allow creds exfil
CVE-2023-24433
6.5 - Medium
- January 26, 2023
Missing permission checks in Jenkins Orka by MacStadium Plugin 1.31 and earlier allow attackers with Overall/Read permission to connect to an attacker-specified HTTP server using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.
AuthZ
CSRF in Jenkins Orka by MacStadium Plugin <=1.31
CVE-2023-24432
8.8 - High
- January 26, 2023
A cross-site request forgery (CSRF) vulnerability in Jenkins Orka by MacStadium Plugin 1.31 and earlier allows attackers to connect to an attacker-specified HTTP server using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.
Session Riding
Missing Permission Check: Jenkins Orka by MacStadium Plugin 1.31
CVE-2023-24431
4.3 - Medium
- January 26, 2023
A missing permission check in Jenkins Orka by MacStadium Plugin 1.31 and earlier allows attackers with Overall/Read permission to enumerate credentials IDs of credentials stored in Jenkins.
AuthZ
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Jenkins Orka By Macstadium or by Jenkins? Click the Watch button to subscribe.