CyberRota
← Ana sayfaya dön

CVE-2026-42521

MEDIUM · CVSS 6.5 EPSS %0.07

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-04-29T14:16:19.170 · Çekilme zamanı: 2026-05-29T12:00:22.698543+00:00

CyberRota Yorumu

Detaylı analiz gerekiyor.

CVE
CVE-2026-42521
Severity
MEDIUM
CVSS
6.5
EPSS
%0.07
Jenkins

Orijinal NVD Açıklaması

Jenkins Matrix Authorization Strategy Plugin 2.0-beta-1 through 3.2.9 (both inclusive) invokes parameterless constructors of classes specified in configuration when deserializing inheritance strategies, without restricting the classes that can be instantiated, allowing attackers with Item/Configure permission to instantiate arbitrary types, which may lead to information disclosure or other impacts depending on the classes available on the classpath.