Unrated severityNVD Advisory· Published Sep 2, 2026
CVE-2026-84660
CVE-2026-84660
Description
A missing permission check in Jenkins Pipeline: Build Step Plugin 599.v4b_67ea_11b_152 and earlier causes downstream builds triggered by the build step to be canceled even when the build's authentication lacks Item/Cancel permission on the downstream job.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=599.v4b_67ea_11b_152
Patches
Vulnerability mechanics
References
1News mentions
1- Jenkins Security Advisory 2026-09-02Jenkins Security Advisories · Sep 2, 2026