We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
In Jenkins Templating Engine Plugin 2.5.3 and earlier, libraries defined in folders are not subject to sandbox protection, allowing attackers with Item/Configure permission to execute arbitrary code in the context of the Jenkins controller JVM.
Reserved 2025-04-01 | Published 2025-04-02 | Updated 2025-04-04 | Assigner jenkinswww.jenkins.io/security/advisory/2025-04-02/ (Jenkins Security Advisory 2025-04-02)
Support options