Crypto Ticker:
sysadmin from Cyber Security News

Critical Jenkins Vulnerability Allows Attackers to Execute Malicious Code on Controller

Abinaya
Aug 6, 2026 at 12:24
38 Views
0 Comments
Critical Jenkins Vulnerability Allows Attackers to Execute Malicious Code on Controller

Jenkins has disclosed a critical security vulnerability that could allow attackers to execute malicious code on a Jenkins controller by bypassing a security filter used in agent-to-controller communications. Tracked as CVE-2026-70426, the flaw affects Jenkins installations using vulnerable versions of the Remoting library. The issue has received a Critical CVSS severity rating. It impacts Jenkins 2.575 and earlier, as well as Jenkins LTS 2.568.1 and earlier. The vulnerability exists in Remoting versions 3384.v60d89463d9e0 and earlier, except for version 3355.3357.v931d3c992987. Jenkins uses its Remoting library, commonly distributed as agent.jar or remoting.jar, to enable communication between the central controller and connected...

Read the full article at the source.

Join the discussion — comment, vote, and submit links.

Register
Was this helpful?
Share:

Comments (0)

Please login or register to join the discussion

No comments yet. Be the first to comment!