AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-25765

CRITICAL · CVSS 9.9 EPSS 1.09%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-02-15 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2023-25765
Severity
CRITICAL
CVSS
9.9
EPSS
1.09%
Jenkins

Original NVD Description

In Jenkins Email Extension Plugin 2.93 and earlier, templates defined inside a folder were not subject to Script Security protection, allowing attackers able to define email templates in folders to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.