Количество 2
Количество 2
CVE-2025-68702
26 дней назад
Jervis is a library for Job DSL plugin scripts and shared Jenkins pipeline libraries. Prior to 2.2, Jervis uses padLeft(32, '0') when it should use padLeft(64, '0') because SHA-256 produces 32 bytes which equates to 64 hex characters. This vulnerability is fixed in 2.2.
CVSS3: 7.5
EPSS: Низкий
GHSA-67rj-pjg6-pq59
27 дней назад
Jervis Has a SHA-256 Hex String Padding Bug
CVSS3: 7.5
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-68702 Jervis is a library for Job DSL plugin scripts and shared Jenkins pipeline libraries. Prior to 2.2, Jervis uses padLeft(32, '0') when it should use padLeft(64, '0') because SHA-256 produces 32 bytes which equates to 64 hex characters. This vulnerability is fixed in 2.2. | CVSS3: 7.5 | 0% Низкий | 26 дней назад | |
GHSA-67rj-pjg6-pq59 Jervis Has a SHA-256 Hex String Padding Bug | CVSS3: 7.5 | 0% Низкий | 27 дней назад |
Уязвимостей на страницу
20