Loading market data...
← Back to CVE feed

CVE-2026-84675

HIGH CVSS 7.4 View on NVD ↗

Description

OS command injection vulnerability in Jenkins TICS Plugin 2025.1.1 and earlier allows attackers able to control build environment variable values to execute arbitrary commands on the agent running the build.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L
Published: Sep 02, 2026 16:17 UTC Modified: Sep 02, 2026 17:18 UTC