CVE-2025-64137

Publication date

2025-10-29 13:29:43

Family

jenkins

State

PUBLISHED

Description

A missing permission check in Jenkins Themis Plugin 1.4.1 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified HTTP server.