Kryptovaluta-ticker:
sysadmin fra Cyber Security News

Critical Jenkins Vulnerability Allows Attackers to Execute Malicious Code on Controller

Abinaya
Aug 6, 2026 at 12:24
36 Visninger
0 Kommentarer
Critical Jenkins Vulnerability Allows Attackers to Execute Malicious Code on Controller

Jenkins has disclosed a critical security vulnerability that could allow attackers to execute malicious code on a Jenkins controller by bypassing a security filter used in agent-to-controller communications. Tracked as CVE-2026-70426, the flaw affects Jenkins installations using vulnerable versions of the Remoting library. The issue has received a Critical CVSS severity rating. It impacts Jenkins 2.575 and earlier, as well as Jenkins LTS 2.568.1 and earlier. The vulnerability exists in Remoting versions 3384.v60d89463d9e0 and earlier, except for version 3355.3357.v931d3c992987. Jenkins uses its Remoting library, commonly distributed as agent.jar or remoting.jar, to enable communication between the central controller and connected...

Læs hele artiklen hos kilden.

Deltag i diskussionen — kommenter, stem og del links.

Registrer
Var dette nyttigt?
Del:

Kommentarer (0)

Log venligst ind eller opret dig for at deltage i diskussionen

Ingen kommentarer ennå. Bli den første til å kommentere!