CVE-2022-36881
Jenkins Git client Plugin 3.11.0 and earlier does not perform SSH host key verification when connecting to Git repositor
Jenkins Git client Plugin 3.11.0 and earlier does not perform SSH host key verification when connecting to Git repositories via SSH, enabling man-in-the-middle attacks.
HIGH · CVSS 8.1
EPSS 0.00912
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0