6 Total advisories
6 Vulnerabilities
0 Malware
Dependency scanning
Check whether org.jenkins-ci.plugins:git-client is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
MEDIUM 5.0
CVE-2026-57282
Jenkins Git client Plugin has an OS command injection vulnerability on agents
MEDIUM 5.0
CVE-2025-67640
Jenkins Git client Plugin has an OS command injection vulnerability on agents in Git client Plugin
MEDIUM 4.3
CVE-2025-58458
Jenkins Git client Plugin file system information disclosure vulnerability
LOW 3.3
CVE-2017-1000242
Insecure temporary file usage in Jenkins Git Client Plugin
HIGH 8.8
CVE-2019-10392
Improper Neutralization of Special Elements used in an OS Command in Jenkins Git Client Plugin
MEDIUM 4.8
CVE-2022-36881
Jenkins Git client plugin 3.11.0 does not perform SSH host key verification
Browse more Maven advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes