2026年3月20日星期五

Jenkins Multiple Vulnerabilities

Jenkins Multiple Vulnerabilities

Release Date: 20 Mar 2026

RISK: Medium Risk

TYPE: Servers - Internet App Servers

Multiple vulnerabilities were identified in Jenkins. An attacker could exploit some of these vulnerabilities to trigger spoofing, data manipulation, remote code execution, security restriction bypass and elevation of privilege on the targeted system.


Impact

  • Spoofing
  • Remote Code Execution
  • Elevation of Privilege
  • Data Manipulation
  • Security Restriction Bypass

System / Technologies affected

  • Jenkins weekly 2.554 and earlier versions
  • Jenkins LTS 2.541.2 and earlier versions

Solutions

Before installation of the software, please visit the vendor web-site for more details.

Apply fixes issued by the vendor:

 


Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

Jenkins 多個漏洞

Jenkins 多個漏洞 發佈日期: 2026年03月20日 風險: 中度風險 類型: 伺服器 - 互聯網應用伺服器 於 Jenkins 發現多...