Jenkins Multiple Vulnerabilities
Release Date: 18 Sep 2025
RISK: Medium Risk
TYPE: Servers - Internet App Servers
Multiple vulnerabilities were identified in Jenkins. A remote attacker could exploit some of these vulnerabilities to trigger data manipulation, denial of service condition, sensitive information disclosure and security restriction bypass on the targeted system.
Impact
- Security Restriction Bypass
- Information Disclosure
- Data Manipulation
- Denial of Service
System / Technologies affected
- Jenkins weekly 2.527 and earlier
- Jenkins LTS 2.516.2 and earlier
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
沒有留言:
發佈留言