Feed/CVE-2026-70428
CVE-2026-70428MEDIUMCVSS 4.3

CVE-2026-70428

Published Aug 5, 2026·Updated Aug 5, 2026

NVD Description

Jenkins 2.575 and earlier, LTS 2.568.1 and earlier improperly identifies file paths attempting path traversal in file parameter names, allowing attackers with Item/Configure and Item/Build permission to write files to arbitrary locations on the controller file system.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free