Zuul CI is a continuous-integration and gating automation platform maintained as an open-source project, with a narrow but specialized footprint in the software delivery pipeline. The observed vulnerability exposure is compact and tied to the core Zuul product itself. Current severity, exploitation, and detailed exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zuul Ci over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-12557CRITICAL An issue was discovered in Zuul 3.x before 3.1.0. If nodes become offline during the build, the no_log attribute of a task is ignored. If the unreachable error occurred in a task u | Jun 19, 2018 | 9.8 | 29 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zuul Ci.
Media articles that mention a CVE ID that affects a product developed by Zuul Ci — matched by CVE ID, not by vendor name.