Critical RCE Vulnerability in Jenkins Exploited in the Wild
ID: 69ba01a7-1544-57de-ad95-4ba52042906b
STIX ID: report--69ba01a7-1544-57de-ad95-4ba52042906b
Feed Name: ThreatCluster
Threat Score
A critical RCE vulnerability (CVE-2026-53435) has been identified in Jenkins versions 2.567 and earlier (including LTS 2.555.2 and earlier) that allows arbitrary code execution via insecure deserialization of attacker-controlled config.xml files; active exploitation has been confirmed, and organizations are urged to patch immediately and increase monitoring.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
