Vulnerability Bulletins

CVE-2026-84671

   
Affected software JENKINS
 
Jenkins File Parameter Plugin 425.v3fa_801681b_5e and earlier allows writing files to arbitrary locations on the Jenkins controller file system through Stapler data binding, which can lead to remote code execution.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-84671