Description

Jenkins - Build great things at any scale! As the leading open source automation server, Jenkins provides over 2000 plugins to support building, deploying and automating any project.

Overview

IdentityNamespaceAutomountSecretsPermissionsWorkloadsRisk
jenkinsdefault62High

Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.


Identities

🤖 jenkins

Namespace: default  |  Automount:

🔑 Permissions (6)

RoleResourceVerbsRiskTags
Role jenkins-schedule-agentscore/podscreate · delete · deletecollection · get · list · patch · update · watchHighLateralMovement Persistence PotentialPrivilegeEscalation Tampering WorkloadExecution
Role jenkins-schedule-agentscore/pods/execcreate · delete · deletecollection · get · list · patch · update · watchHighCodeExecution LateralMovement PodExec PotentialPrivilegeEscalation
Role jenkins-casc-reloadcore/configmapsget · list · watchMediumConfigMapAccess DataExposure InformationDisclosure
Role jenkins-schedule-agentscore/pods/logget · list · watchMediumDataExposure InformationDisclosure LogAccess
Role jenkins-schedule-agentscore/eventsget · list · watchLow
Role jenkins-schedule-agentscore/persistentvolumeclaimscreate · delete · deletecollection · get · list · patch · update · watchLow

⚠️ Potential Abuse (6)

The following security risks were found based on the above permissions:

📦 Workloads (2)

KindNameContainerImage
StatefulSetjenkinsconfig-reloaddocker.io/kiwigrid/k8s-sidecar:1.30.3
StatefulSetjenkinsjenkinsdocker.io/jenkins/jenkins:2.504.2-jdk21