CVE-2025-64140 - Jenkins Azure CLI Plugin Command Injection Vulnerability
CVE ID : CVE-2025-64140
Published : Oct. 29, 2025, 2:15 p.m. | 1 hour, 30 minutes ago
Description : Jenkins Azure CLI Plugin 0.9 and earlier does not restrict which commands it executes on the Jenkins controller, allowing attackers with Item/Configure permission to execute arbitrary shell commands.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Oct. 29, 2025, 2:15 p.m. | 1 hour, 30 minutes ago
Description : Jenkins Azure CLI Plugin 0.9 and earlier does not restrict which commands it executes on the Jenkins controller, allowing attackers with Item/Configure permission to execute arbitrary shell commands.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...