CVE Database
/

CVE-2026-42519

Back to search

CVE-2026-42519

Published: Apr 29, 2026

Modified: Apr 29, 2026

PUBLISHED

Description

A missing permission check in Jenkins Script Security Plugin 1399.ve6a_66547f6e1 and earlier allows attackers with Overall/Read permission to enumerate pending and approved Script Security classpaths.

VendorProductVersions

Jenkins Project

Jenkins Script Security Plugin

affected
0 - <= 1399.ve6a_66547f6e1

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now