CVE-2026-42520 - Jenkins Credentials Binding Plugin Unsanitized File Name Vulnerability
CVE ID :CVE-2026-42520 Published : April 29, 2026, 2:16 p.m. | 21 minutes ago Description :Jenkins Credentials Binding Plugin 719.v80e905ef14eb_ and earlier does not sanitize file names for file and zip file credentials, allowing attackers able to provide credentials to a job to write files to
ORIGINAL SOURCE →via CVE Feed Latest
ADVERTISEMENT
⚡ STAY AHEAD
Events like this, convergence-verified across 689 sources, land in your inbox every Sunday. Free.
GET THE SUNDAY BRIEFING →RELATED · cyber
- [CYBER] DFIR L3 Interviews
- [CYBER] Cyber proxy wars escalate as hackers shift to infrastructure targets
- [CYBER] cPanel, WHM emergency update fixes critical auth bypass bug
- [CYBER] Vect 2.0 Ransomware Acts as Wiper, Thanks to Design Error
- [CYBER] Hormuz Crisis Drives Insurance Spike
- [CYBER] Exploring training platforms alternative to Mimecast for better phishing awareness.