CVE-2020-2280: Jenkins Warnings

High severity, CVSS 8.8. EPSS: 1.1% chance of exploitation in the next 30 days.

A cross-site request forgery (CSRF) vulnerability in Jenkins Warnings Plugin 5.0.1 and earlier allows attackers to execute arbitrary code.

Affected products

  • Jenkins Warnings: up to and including 5.0.1

Published 2020-09-23. Last modified 2026-06-17.