CVE-2025-53652
09.07.2025, 16:15
Jenkins Git Parameter Plugin 439.vb_0e46ca_14534 and earlier does not validate that the Git parameter value submitted to the build matches one of the offered choices, allowing attackers with Item/Build permission to inject arbitrary values into Git parameters.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | git_parameter | 𝑥 < 444.vca_b_84d3703c2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration