jenkins-bug-bounty-program

16
In Scope
6
Out of Scope

In-Scope Assets (16)

AssetCategoryQuick Links
https://github.com/jenkinsci/credentials-binding-pluginOPEN-SOURCE-
https://github.com/jenkinsci/credentials-pluginOPEN-SOURCE-
https://github.com/jenkinsci/git-client-pluginOPEN-SOURCE-
https://github.com/jenkinsci/git-pluginOPEN-SOURCE-
https://github.com/jenkinsci/jellyOPEN-SOURCE-
https://github.com/jenkinsci/jenkinsOPEN-SOURCE-
https://github.com/jenkinsci/ldap-pluginOPEN-SOURCE-
https://github.com/jenkinsci/matrix-auth-pluginOPEN-SOURCE-
https://github.com/jenkinsci/plain-credentials-pluginOPEN-SOURCE-
https://github.com/jenkinsci/script-security-pluginOPEN-SOURCE-
https://github.com/jenkinsci/ssh-agents-pluginOPEN-SOURCE-
https://github.com/jenkinsci/ssh-credentials-pluginOPEN-SOURCE-
https://github.com/jenkinsci/staplerOPEN-SOURCE-
https://github.com/jenkinsci/winstoneOPEN-SOURCE-
https://github.com/jenkinsci/workflow-cps-pluginOPEN-SOURCE-
https://github.com/jenkinsci/workflow-scm-step-pluginOPEN-SOURCE-
Out-of-Scope Assets (6)
AssetCategory
Any components/plugins not explicitly included are not in scope (e.g. forks, libraries or packages)OTHER
Docker images are not in scope for this programOTHER
Everything from https://www.jenkins.io/security/reporting/#non-issues, and in addition the following itemsOTHER
Jenkins installers are not in scopeOTHER
Jenkins instances hosted by users are not in scopeOTHER
Jenkins project infrastructure (the one hosted by the project) is not in scopeOTHER