Beveiligingsadvies

CVE-2026-57301

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-06-24 13:20:16
Laatst bijgewerkt 2026-06-24 14:34:32
Toegewezen door jenkins
CVSS-score 8.8
Status PUBLISHED

Beschrijving

Jenkins OWASP ZAP Plugin 1.0.7 and earlier performs build operations on the Jenkins controller rather than the assigned agent, allowing attackers with Item/Configure permission to execute arbitrary code on the Jenkins controller.