SEPTEMBER 30, 2026
Live Feed
Back to database
Case File

CVE-2021-21669

CRITICAL · CVSS 9.8 EPSS 25.75%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-06-18 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It affects Jenkins. Its EPSS score suggests a 25.7% probability of exploitation in the next 30 days.

CVE
CVE-2021-21669
Severity
CRITICAL
CVSS
9.8
EPSS
25.75%
Jenkins

Original NVD Description

Jenkins Generic Webhook Trigger Plugin 1.72 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

Related CVEs

Other vulnerabilities affecting the same vendor(s)