[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2021-21687":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T14:55:33.319Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":229,"aliases":230,"duplicate_of":9,"upstream":233,"downstream":234,"duplicates":245,"related":246,"reserved_at":9,"published_at":247,"modified_at":248,"state":249,"summary":250,"references_raw":259,"kevs":279,"epss":280,"epss_history":283,"metrics":546,"affected":561},"CVE-2021-21687","Jenkins 2.318 and earlier, LTS 2.303.2 and earlier does not check agent-to-controller access to create symbolic links when unarchiving a symbolic link in FilePath#untar.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-862","Missing Authorization","The product does not perform an authorization check when an actor attempts to access a resource or perform an action.","weakness","Incomplete","Class","High",[20],{"id":21,"name":22,"techniques":23},"CAPEC-665","Exploitation of Thunderbolt Protection Flaws",[24,61,101],{"id":25,"name":26,"tactics":27,"countermeasures":34},"T1211","Exploitation for Stealth",[28,31],{"id":29,"name":30},"TA0030","Defense Evasion",{"id":32,"name":33},"TA0005","Stealth",[35,40,44,48,53,57],{"id":36,"name":37,"tactic":38},"D3-MBT","Memory Boundary Tracking",{"name":39},"Detect",{"id":41,"name":42,"tactic":43},"D3-PCSV","Process Code Segment Verification",{"name":39},{"id":45,"name":46,"tactic":47},"D3-SSC","Shadow Stack Comparisons",{"name":39},{"id":49,"name":50,"tactic":51},"D3-PSEP","Process Segment Execution Prevention",{"name":52},"Harden",{"id":54,"name":55,"tactic":56},"D3-SAOR","Segment Address Offset Randomization",{"name":52},{"id":58,"name":59,"tactic":60},"D3-SFCV","Stack Frame Canary Validation",{"name":52},{"id":62,"name":63,"tactics":64,"countermeasures":70},"T1542.002","Component Firmware",[65,66,67],{"id":29,"name":30},{"id":32,"name":33},{"id":68,"name":69},"TA0110","Persistence",[71,76,80,84,88,92,96],{"id":72,"name":73,"tactic":74},"D3-SWI","Software Inventory",{"name":75},"Model",{"id":77,"name":78,"tactic":79},"D3-AVE","Asset Vulnerability Enumeration",{"name":75},{"id":81,"name":82,"tactic":83},"D3-FEMC","Firmware Embedded Monitoring Code",{"name":39},{"id":85,"name":86,"tactic":87},"D3-FV","Firmware Verification",{"name":39},{"id":89,"name":90,"tactic":91},"D3-FBA","Firmware Behavior Analysis",{"name":39},{"id":93,"name":94,"tactic":95},"D3-SU","Software Update",{"name":52},{"id":97,"name":98,"tactic":99},"D3-RS","Restore Software",{"name":100},"Restore",{"id":102,"name":103,"tactics":104,"countermeasures":113},"T1556","Modify Authentication Process",[105,106,109,110],{"id":29,"name":30},{"id":107,"name":108},"TA0112","Defense Impairment",{"id":68,"name":69},{"id":111,"name":112},"TA0031","Credential Access",[114,118,122,126,130,134,138,142,146,150,155,159,163,167,171,176,180,184,188,193,197,201,205,209,213,217,221,225],{"id":115,"name":116,"tactic":117},"D3-CI","Configuration Inventory",{"name":75},{"id":119,"name":120,"tactic":121},"D3-NTPM","Network Traffic Policy Mapping",{"name":75},{"id":123,"name":124,"tactic":125},"D3-AM","Access Modeling",{"name":75},{"id":127,"name":128,"tactic":129},"D3-FA","File Analysis",{"name":39},{"id":131,"name":132,"tactic":133},"D3-FIM","File Integrity Monitoring",{"name":39},{"id":135,"name":136,"tactic":137},"D3-PLA","Process Lineage Analysis",{"name":39},{"id":139,"name":140,"tactic":141},"D3-PSMD","Process Self-Modification Detection",{"name":39},{"id":143,"name":144,"tactic":145},"D3-PSA","Process Spawn Analysis",{"name":39},{"id":147,"name":148,"tactic":149},"D3-SFA","System File Analysis",{"name":39},{"id":151,"name":152,"tactic":153},"D3-FEV","File Eviction",{"name":154},"Evict",{"id":156,"name":157,"tactic":158},"D3-PT","Process Termination",{"name":154},{"id":160,"name":161,"tactic":162},"D3-PS","Process Suspension",{"name":154},{"id":164,"name":165,"tactic":166},"D3-HR","Host Reboot",{"name":154},{"id":168,"name":169,"tactic":170},"D3-HS","Host Shutdown",{"name":154},{"id":172,"name":173,"tactic":174},"D3-DF","Decoy File",{"name":175},"Deceive",{"id":177,"name":178,"tactic":179},"D3-FE","File Encryption",{"name":52},{"id":181,"name":182,"tactic":183},"D3-RF","Restore File",{"name":100},{"id":185,"name":186,"tactic":187},"D3-RC","Restore Configuration",{"name":100},{"id":189,"name":190,"tactic":191},"D3-CF","Content Filtering",{"name":192},"Isolate",{"id":194,"name":195,"tactic":196},"D3-LFP","Local File Permissions",{"name":192},{"id":198,"name":199,"tactic":200},"D3-RFAM","Remote File Access Mediation",{"name":192},{"id":202,"name":203,"tactic":204},"D3-CQ","Content Quarantine",{"name":192},{"id":206,"name":207,"tactic":208},"D3-CM","Content Modification",{"name":192},{"id":210,"name":211,"tactic":212},"D3-KBPI","Kernel-based Process Isolation",{"name":192},{"id":214,"name":215,"tactic":216},"D3-SCF","System Call Filtering",{"name":192},{"id":218,"name":219,"tactic":220},"D3-HBPI","Hardware-based Process Isolation",{"name":192},{"id":222,"name":223,"tactic":224},"D3-ABPI","Application-based Process Isolation",{"name":192},{"id":226,"name":227,"tactic":228},"D3-WSAM","Web Session Access Mediation",{"name":192},[],[231,232],"GHSA-3q84-vrvx-rfvf","BIT-jenkins-2021-21687",[],[235,237,239,241,243],{"_key":236},"RHSA-2021:4799",{"_key":238},"RHSA-2021:4801",{"_key":240},"RHSA-2021:4827",{"_key":242},"RHSA-2021:4829",{"_key":244},"RHSA-2021:4833",[],[],"2021-11-04T16:30:27.000Z","2024-08-03T18:23:28.304Z","Modified",{"cisa_kev":251,"cisa_ransomware":251,"cisa_vendor":9,"epss_severity":252,"epss_score":253,"severity":254,"severity_score":255,"severity_version":256,"severity_source":257,"severity_vector":258,"severity_status":249},false,"low",0.00271,"critical",9.1,"v3.1","nvd","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N",[260,269,274],{"url":261,"sources":262,"tags":265},"https://www.jenkins.io/security/advisory/2021-11-04/#SECURITY-2455",[263,257,264],"cve.org","osv_maven",[266,267,268],"X Refsource CONFIRM","Vendor Advisory","WEB",{"url":270,"sources":271,"tags":272},"https://nvd.nist.gov/vuln/detail/CVE-2021-21687",[264],[273],"Advisory",{"url":275,"sources":276,"tags":277},"https://github.com/jenkinsci/jenkins",[264],[278],"PACKAGE",[],{"date":281,"score":253,"percentile":282},"2026-06-04",0.50772,[284,287,290,293,296,299,302,305,308,311,314,317,320,323,326,329,332,335,338,341,344,347,350,352,355,358,361,364,368,371,374,376,379,382,385,388,391,394,397,400,403,406,408,411,414,417,419,422,425,428,431,434,436,439,443,446,449,452,454,457,460,463,465,468,471,474,477,480,483,486,489,492,495,498,501,504,507,510,512,514,517,520,523,526,529,532,535,537,540,543],{"date":285,"score":253,"percentile":286},"2025-11-04",0.50372,{"date":288,"score":253,"percentile":289},"2025-11-05",0.50358,{"date":291,"score":253,"percentile":292},"2025-11-06",0.50368,{"date":294,"score":253,"percentile":295},"2025-11-07",0.50394,{"date":297,"score":253,"percentile":298},"2025-11-08",0.50395,{"date":300,"score":253,"percentile":301},"2025-11-09",0.50383,{"date":303,"score":253,"percentile":304},"2025-11-10",0.50352,{"date":306,"score":253,"percentile":307},"2025-11-11",0.50366,{"date":309,"score":253,"percentile":310},"2025-11-12",0.50392,{"date":312,"score":253,"percentile":313},"2025-11-13",0.50397,{"date":315,"score":253,"percentile":316},"2025-11-14",0.50405,{"date":318,"score":253,"percentile":319},"2025-11-15",0.50398,{"date":321,"score":253,"percentile":322},"2025-11-16",0.50378,{"date":324,"score":253,"percentile":325},"2025-11-17",0.50355,{"date":327,"score":253,"percentile":328},"2025-11-18",0.4749,{"date":330,"score":253,"percentile":331},"2025-11-19",0.47505,{"date":333,"score":253,"percentile":334},"2025-11-20",0.47485,{"date":336,"score":253,"percentile":337},"2025-11-21",0.50363,{"date":339,"score":253,"percentile":340},"2025-11-22",0.50357,{"date":342,"score":253,"percentile":343},"2025-11-23",0.50318,{"date":345,"score":253,"percentile":346},"2025-11-24",0.50306,{"date":348,"score":253,"percentile":349},"2025-11-25",0.50314,{"date":351,"score":253,"percentile":346},"2025-11-26",{"date":353,"score":253,"percentile":354},"2025-11-27",0.50312,{"date":356,"score":253,"percentile":357},"2025-11-28",0.5028,{"date":359,"score":253,"percentile":360},"2025-11-29",0.50258,{"date":362,"score":253,"percentile":363},"2025-11-30",0.50245,{"date":365,"score":366,"percentile":367},"2025-12-01",0.00234,0.46149,{"date":369,"score":366,"percentile":370},"2025-12-02",0.46164,{"date":372,"score":366,"percentile":373},"2025-12-03",0.46157,{"date":375,"score":253,"percentile":360},"2025-12-04",{"date":377,"score":253,"percentile":378},"2025-12-05",0.50281,{"date":380,"score":253,"percentile":381},"2025-12-06",0.50277,{"date":383,"score":253,"percentile":384},"2025-12-07",0.50269,{"date":386,"score":253,"percentile":387},"2025-12-08",0.50263,{"date":389,"score":253,"percentile":390},"2025-12-09",0.50284,{"date":392,"score":253,"percentile":393},"2025-12-10",0.50351,{"date":395,"score":253,"percentile":396},"2025-12-11",0.5037,{"date":398,"score":253,"percentile":399},"2025-12-12",0.50399,{"date":401,"score":253,"percentile":402},"2025-12-13",0.50384,{"date":404,"score":253,"percentile":405},"2025-12-14",0.50367,{"date":407,"score":253,"percentile":393},"2025-12-15",{"date":409,"score":253,"percentile":410},"2025-12-16",0.5036,{"date":412,"score":253,"percentile":413},"2025-12-17",0.50387,{"date":415,"score":253,"percentile":416},"2025-12-18",0.50428,{"date":418,"score":253,"percentile":416},"2025-12-19",{"date":420,"score":253,"percentile":421},"2025-12-20",0.50389,{"date":423,"score":253,"percentile":424},"2025-12-21",0.50362,{"date":426,"score":253,"percentile":427},"2025-12-22",0.50342,{"date":429,"score":253,"percentile":430},"2025-12-23",0.5034,{"date":432,"score":253,"percentile":433},"2025-12-24",0.50349,{"date":435,"score":253,"percentile":399},"2025-12-25",{"date":437,"score":253,"percentile":438},"2025-12-26",0.50388,{"date":440,"score":441,"percentile":442},"2025-12-27",0.00144,0.35369,{"date":444,"score":253,"percentile":445},"2025-12-28",0.50331,{"date":447,"score":253,"percentile":448},"2025-12-29",0.50317,{"date":450,"score":253,"percentile":451},"2025-12-30",0.50313,{"date":453,"score":253,"percentile":393},"2025-12-31",{"date":455,"score":366,"percentile":456},"2026-01-01",0.46266,{"date":458,"score":366,"percentile":459},"2026-01-02",0.46242,{"date":461,"score":366,"percentile":462},"2026-01-03",0.46227,{"date":464,"score":253,"percentile":349},"2026-01-04",{"date":466,"score":253,"percentile":467},"2026-01-05",0.50297,{"date":469,"score":253,"percentile":470},"2026-01-06",0.50304,{"date":472,"score":253,"percentile":473},"2026-01-07",0.50316,{"date":475,"score":253,"percentile":476},"2026-01-08",0.50341,{"date":478,"score":253,"percentile":479},"2026-01-09",0.50324,{"date":481,"score":253,"percentile":482},"2026-01-10",0.50321,{"date":484,"score":253,"percentile":485},"2026-01-11",0.503,{"date":487,"score":253,"percentile":488},"2026-01-12",0.50257,{"date":490,"score":253,"percentile":491},"2026-01-13",0.50233,{"date":493,"score":253,"percentile":494},"2026-01-14",0.50282,{"date":496,"score":253,"percentile":497},"2026-01-15",0.50286,{"date":499,"score":253,"percentile":500},"2026-01-16",0.50307,{"date":502,"score":253,"percentile":503},"2026-01-17",0.50285,{"date":505,"score":253,"percentile":506},"2026-01-18",0.5026,{"date":508,"score":253,"percentile":509},"2026-01-19",0.50234,{"date":511,"score":253,"percentile":491},"2026-01-20",{"date":513,"score":253,"percentile":509},"2026-01-21",{"date":515,"score":253,"percentile":516},"2026-01-22",0.50241,{"date":518,"score":253,"percentile":519},"2026-01-23",0.5029,{"date":521,"score":253,"percentile":522},"2026-01-24",0.50296,{"date":524,"score":253,"percentile":525},"2026-01-25",0.50247,{"date":527,"score":253,"percentile":528},"2026-01-26",0.50221,{"date":530,"score":253,"percentile":531},"2026-01-27",0.50226,{"date":533,"score":253,"percentile":534},"2026-01-28",0.50238,{"date":536,"score":253,"percentile":509},"2026-01-29",{"date":538,"score":253,"percentile":539},"2026-01-30",0.50237,{"date":541,"score":253,"percentile":542},"2026-01-31",0.50244,{"date":544,"score":366,"percentile":545},"2026-02-01",0.46063,[547,556],{"source":257,"cvss_v2_0":548,"cvss_v3_0":9,"cvss_v3_1":553,"cvss_v4_0":9},{"baseScore":549,"baseSeverity":9,"vectorString":550,"impactScore":551,"exploitabilityScore":552},6.4,"AV:N/AC:L/Au:N/C:P/I:P/A:N",4.9,10,{"baseScore":255,"baseSeverity":554,"vectorString":258,"impactScore":555,"exploitabilityScore":552},"CRITICAL",8.7,{"source":264,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":557,"cvss_v4_0":9},{"baseScore":558,"baseSeverity":9,"vectorString":559,"impactScore":552,"exploitabilityScore":560},9,"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",5.6,[562,577,587],{"ecosystem":9,"name":563,"vendor":564,"product":565,"cpe_part":566,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":567},"Jenkins","jenkins project","jenkins","a",[568,574],{"version":569,"is_range":570,"range_type":263,"version_start":571,"version_start_type":572,"version_end":573,"version_end_type":572,"fixed_in":9},">= unspecified, \u003C= 2.318",true,"unspecified","including","2.318",{"version":575,"is_range":570,"range_type":263,"version_start":571,"version_start_type":572,"version_end":576,"version_end_type":572,"fixed_in":9},">= unspecified, \u003C= LTS 2.303.2","LTS 2.303.2",{"ecosystem":9,"name":563,"vendor":9,"product":563,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":578},[579,584],{"version":580,"is_range":570,"range_type":581,"version_start":9,"version_start_type":9,"version_end":582,"version_end_type":583,"fixed_in":9},"lt2.303.3","cpe","2.303.3","excluding",{"version":585,"is_range":570,"range_type":581,"version_start":9,"version_start_type":9,"version_end":586,"version_end_type":583,"fixed_in":9},"lt2.319","2.319",{"ecosystem":588,"name":589,"vendor":590,"product":591,"cpe_part":9,"purl_type":592,"purl_namespace":590,"purl_name":591,"source":9,"versions":593},"Maven","org.jenkins-ci.main:jenkins-core","org.jenkins-ci.main","jenkins-core","maven",[594,597],{"version":595,"is_range":570,"range_type":596,"version_start":9,"version_start_type":9,"version_end":582,"version_end_type":583,"fixed_in":9},"lt2_303_3","ecosystem",{"version":598,"is_range":570,"range_type":596,"version_start":599,"version_start_type":572,"version_end":586,"version_end_type":583,"fixed_in":9},"gte2_304_lt2_319","2.304"]