High severity8.8NVD Advisory· Published Aug 5, 2026· Updated Aug 31, 2026
CVE-2026-70431
CVE-2026-70431
Description
Jenkins Multijob Plugin 669.v9d96a_d9c71b_0 and earlier provides Groovy scripting features that do not integrate with Script Security Plugin, allowing attackers with Item/Create or Item/Configure permission to execute arbitrary code in the context of the Jenkins controller JVM.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=669.v9d96a_d9c71b_0
Patches
Vulnerability mechanics
References
1News mentions
1- Jenkins Security Advisory 2026-08-05Jenkins Security Advisories · Aug 5, 2026