๐Ÿ” CVE Alert

CVE-2026-57287

MEDIUM 4.3
CVSS Score
4.3
EPSS Score
0.0%
EPSS Percentile
0th

Jenkins Job Configuration History Plugin 1356.ve360da_6c523a_ and earlier does not redact the encrypted values of secrets when displaying historical job and agent configurations, allowing attackers with Extended Read permission to view encrypted secret values that would otherwise be redacted.

Vendor jenkins project
Product jenkins job configuration history plugin
Published Jun 24, 2026
Last Updated Jun 24, 2026
Stay Ahead of the Next One

Get instant alerts for jenkins project jenkins job configuration history plugin

Be the first to know when new medium vulnerabilities affecting jenkins project jenkins job configuration history plugin are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Jenkins Project / Jenkins Job Configuration History Plugin
0 โ‰ค 1356.ve360da_6c523a_

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
jenkins.io: https://www.jenkins.io/security/advisory/2026-06-24/#SECURITY-3742