4.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description
A missing permission check in Jenkins Git Parameter Plugin 462.vdcf3df2ed2ca_ and earlier allows attackers with Item/Read permission to obtain information about the SCM repository used by a job, such as branch names, tag names, and revision metadata.
Basic Information
ID
CVE-2026-57286
Source
jenkins
Published
Jun 24, 2026 at 13:20
Modified
Jun 24, 2026 at 14:11
Affected Product
Vendor
Jenkins Project
Product
Jenkins Git Parameter Plugin
Affected Versions
Jenkins Project Jenkins Git Parameter Plugin 0