CVE-2020-2240: Jenkins Database

High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.

A cross-site request forgery (CSRF) vulnerability in Jenkins database Plugin 1.6 and earlier allows attackers to execute arbitrary SQL scripts.

Affected products

  • Jenkins Database: up to and including 1.6

Published 2020-09-01. Last modified 2026-06-17.