Back to CVE List

CVE-2026-42522

Vulnerability Description

A missing permission check in Jenkins GitHub Branch Source Plugin 1967.vdea_d580c1a_b_a_ and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL with attacker-specified GitHub App credentials.

Vulnerability Details

Published Date
Last Modified
Source
NVD
Vendor
Jenkins Project
Product
Jenkins GitHub Branch Source Plugin

External References

Discussion (0)

Add Comment

No comments yet. Be the first!