logo

Critical RCE Vulnerability in Jenkins Exploited in the Wild

ID: 69ba01a7-1544-57de-ad95-4ba52042906b

STIX ID: report--69ba01a7-1544-57de-ad95-4ba52042906b

Feed Name: ThreatCluster

Threat Score
85/100

Date Published: 2026-06-17

Date Updated: 2026-06-22

...
...

A critical RCE vulnerability (CVE-2026-53435) has been identified in Jenkins versions 2.567 and earlier (including LTS 2.555.2 and earlier) that allows arbitrary code execution via insecure deserialization of attacker-controlled config.xml files; active exploitation has been confirmed, and organizations are urged to patch immediately and increase monitoring.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.