CVE-2025-64140
EUVD-2025-3665829.10.2025, 14:15
Jenkins Azure CLI Plugin 0.9 and earlier does not restrict which commands it executes on the Jenkins controller, allowing attackers with Item/Configure permission to execute arbitrary shell commands.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jenkins | azure_cli | 𝑥 ≤ 0.9 |
𝑥
= Vulnerable software versions