org.jenkins-ci.plugins:templating-engine
Maven2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting org.jenkins-ci.plugins:templating-enginepage 1 of 1
- CVE-2021-21646HIGHCVSS 8.8EG 8.8✓ Fixed in 2.22021-04-21
vulnerable: 1.0 ... 2.1 (22 versions)
Jenkins Templating Engine Plugin 2.1 and earlier does not protect its pipeline configurations using Script Security Plugin, allowing attackers with Job/Configure permission to execute arbitrary code in the context of the Jenkins controller…
- CVE-2025-31722HIGHCVSS 8.8EG 8.8✓ Fixed in 2.5.42025-04-02
vulnerable: 1.0 ... 2.5.3 (32 versions)
In Jenkins Templating Engine Plugin 2.5.3 and earlier, libraries defined in folders are not subject to sandbox protection, allowing attackers with Item/Configure permission to execute arbitrary code in the context of the Jenkins controller…
Check whether org.jenkins-ci.plugins:templating-engine is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for org.jenkins-ci.plugins:templating-engine CVEs against the assets you own.
Start Free Scan →