CVE-2025-64140
Jenkins Azure CLI Plugin 0.9 and earlier does not restrict which commands it executes on the Jenkins controller, allowing attackers with Item/Configure permission to execute arbitrary shell commands.
Vendor
Product
CWE
Yayın Tarihi
2025-10-29 14:15:58
Güncelleme
2025-12-22 15:18:33
Source Identifier
jenkinsci-cert@googlegroups.com
KEV Date Added
-