CVE-2025-64140 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Jenkins Azure CLI Plugin 0.9 and earlier does not restrict which commands it executes on the Jenkins controller, allowing attackers with Item/Configure permissi…
High CVSS: 8.8

CVE-2025-64140

Jenkins Azure CLI Plugin 0.9 and earlier does not restrict which commands it executes on the Jenkins controller, allowing attackers with Item/Configure permission to execute arbitrary shell commands.
Vendor
Jenkins
Product
Azure Cli
CWE
CWE-78
Yayın Tarihi
2025-10-29 14:15:58
Güncelleme
2025-12-22 15:18:33
Source Identifier
jenkinsci-cert@googlegroups.com
KEV Date Added
-

Kategoriler

Referanslar