Active Directory
CloudBees CIVersion: 2.971.v653d8b_6e5548
CloudBees supported
Plugin ID: active-directory
Minimum Jenkins required: 2.541.3
Last released: 3 days, 13 hours ago
This plugin enables authentication through Active Directory.
Security Warnings
- Man-in-the-middle vulnerability due to missing certificate check(last version affected: 2.2)
- Improper certificate validation(last version affected: 2.10)
- Missing permission check allows accessing domain health check page(last version affected: 2.19)
- Login allowed with empty password(last version affected: 2.19)
- Login allowed with hardcoded password(last version affected: 2.19)
- Authentication cache allows logging in with any password(last version affected: 2.19)
- CSRF vulnerability(last version affected: 2.19)
- User passwords transmitted in plain text(last version affected: 2.25)
- Password transmitted in plain text(last version affected: 2.30)
- RCE vulnerability from unvalidated LDAP referrals(last version affected: 2.41)
- LDAP injection vulnerability(last version affected: 2.41.1)
Download PluginOlder versions
Active Directory 2.971.v653d8b_6e5548
SHA1:
142af04f993412beedacd9a9035c6e1e8b188e90
SHA256:
3f376377599db5786fe65029b44f518ec57fd5d3459761738a3f7f43d53809f7
Maintainers:
- Basil Crow
- Félix Belzunce Arcos
- Kohsuke Kawaguchi
- Baptiste Mathus
- Evaristo Gutierrez
- Francisco Fernández
- rsandell
- Carroll Chiou
- James Nord
- Raul Arabaolaza