← Browse

CVE-2026-84675

Medium

Elevated severity or exploit probability.

CVSS base
7.4 HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L
EPSS — probability of exploitation (30 days)
1.2%
65.7th percentile
CISA KEV
Not listed
Weakness / dates
CWE-78
Published 2026-09-02 · modified 2026-09-03

Description

OS command injection vulnerability in Jenkins TICS Plugin 2025.1.1 and earlier allows attackers able to control build environment variable values to execute arbitrary commands on the agent running the build.

References

Official: NVD · CVE.org