Логотип exploitDog
bind:CVE-2025-64132
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-64132

Количество 2

Количество 2

nvd логотип

CVE-2025-64132

3 месяца назад

Jenkins MCP Server Plugin 0.84.v50ca_24ef83f2 and earlier does not perform permission checks in multiple MCP tools, allowing attackers to trigger builds and obtain information about job and cloud configuration they should not be able to access.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-mrpq-9jr3-rqq9

3 месяца назад

Jenkins MCP Server Plugin does not perform permission checks in multiple MCP tools

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-64132

Jenkins MCP Server Plugin 0.84.v50ca_24ef83f2 and earlier does not perform permission checks in multiple MCP tools, allowing attackers to trigger builds and obtain information about job and cloud configuration they should not be able to access.

CVSS3: 5.4
0%
Низкий
3 месяца назад
github логотип
GHSA-mrpq-9jr3-rqq9

Jenkins MCP Server Plugin does not perform permission checks in multiple MCP tools

CVSS3: 5.4
0%
Низкий
3 месяца назад

Уязвимостей на страницу