August 15, 2026

CVE Watchtower


← Back to CVE List

CVE-2025-59474NVD

Vulnerability Summary

Jenkins 2.527 and earlier, LTS 2.516.2 and earlier does not perform a permission check in the sidepanel of a page intentionally accessible to users lacking Overall/Read permission, allowing attackers without Overall/Read permission to list agent names through its sidepanel executors widget.
Severity Level
UNKNOWN
Published Date
Sep 17, 2025
Last Modified
Sep 17, 2025
Exploitation Status
No confirmed exploitation yet
EPSS Score (30-Day)
Data Pending
Root Weakness (CWE)
N/A