← Back

Rapiddeploy

rapiddeploy

Vendor: Jenkins • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Jenkins
1Rapiddeploy
Jun 17, 2026
Mar 25, 2020
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
Jenkins RapidDeploy Plugin 4.2 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
1Jenkins
1Rapiddeploy
Jun 17, 2026
Mar 25, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Jenkins RapidDeploy Plugin 4.2 and earlier does not escape package names in the table of packages obtained from a remote server, resulting in a stored XSS vulnerability.
1Jenkins
1Rapiddeploy
Jun 17, 2026
Dec 17, 2019
N/A· v4
4.3 MEDIUM· v3
4.0 MEDIUM· v2
A missing permission check in Jenkins RapidDeploy Plugin 4.1 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified web server.
1Jenkins
1Rapiddeploy
Jun 17, 2026
Dec 17, 2019
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
A cross-site request forgery vulnerability in Jenkins RapidDeploy Plugin 4.1 and earlier allows attackers to connect to an attacker-specified web server.