A cross-site request forgery (CSRF) vulnerability in Jenkins Multijob Plugin 669.v9d96a_d9c71b_0 and earlier allows attackers to execute arbitrary code in the context of the Jenkins controller JVM.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 05 Aug 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cross‑Site Request Forgery in Jenkins Multijob Plugin Allows Arbitrary Code Execution | |
| First Time appeared |
Jenkins Project
Jenkins Project jenkins Multijob Plugin |
|
| Vendors & Products |
Jenkins Project
Jenkins Project jenkins Multijob Plugin |
Wed, 05 Aug 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-352 | |
| Metrics |
cvssV3_1
|
Wed, 05 Aug 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A cross-site request forgery (CSRF) vulnerability in Jenkins Multijob Plugin 669.v9d96a_d9c71b_0 and earlier allows attackers to execute arbitrary code in the context of the Jenkins controller JVM. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2026-08-05T18:27:00.547Z
Reserved: 2026-08-04T14:13:20.602Z
Link: CVE-2026-70432
Updated: 2026-08-05T18:26:29.258Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-05T21:15:03Z
Weaknesses