CVE-2020-2307: Jenkins Kubernetes

Medium severity, CVSS 4.3. EPSS: 1.3% chance of exploitation in the next 30 days.

Jenkins Kubernetes Plugin 1.27.3 and earlier allows low-privilege users to access possibly sensitive Jenkins controller environment variables.

Affected products

  • Jenkins Kubernetes: up to and including 1.27.3

Published 2020-11-04. Last modified 2026-06-17.