CVE-2026-84653
N/A
N/A
Summary
Jenkins 2.421 through 2.579 (both inclusive), LTS 2.426.1 through 2.568.2 (both inclusive) does not correctly perform permission checks in the Appearance configuration page, allowing attackers with Overall/Manage permission to modify Appearance configuration options they should not have access to.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Jenkins Project | Jenkins | 2.580 < * | unaffected |
| Jenkins Project | Jenkins | 0 < 2.421 | unaffected |
| Jenkins Project | Jenkins | 2.568.3 < 2.568.* | unaffected |
Weaknesses
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.