Boletines de Vulnerabilidades

CVE-2025-64135

   
Software afectado JENKINS
 
Jenkins Eggplant Runner Plugin 0.0.1.301.v963cffe8ddb_8 and earlier sets the Java system property `jdk.http.auth.tunneling.disabledSchemes` to an empty value, disabling a protection mechanism of the Java runtime.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2025-64135