VendorsJenkinsscript_securityany version
Vulnerabilities

Jenkins Script Security any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

42CVEs
CVE-2026-42519
A missing permission check in Jenkins Script Security Plugin 1399.ve6a_66547f6e1 and earlier allows attackers with Overall/Read permission to enumerate pending and approved Script Security classpaths.
Published 2026-04-29 · Analyzed
4.3EPSS 0.003
CVE-2026-84659
Jenkins Script Security Plugin 1412.v7737b_3405f86 and earlier does not enforce a permission check in the method that controls the "Force the use of the sandbox globally in the system" setting, allowing attackers to disable it through Stapler data binding.
Published 2026-09-02 · Analyzed
4.3EPSS 0.003
← Prev2 / 2