{"id":"CVE-2026-70428","title":"Jenkins 2.575 and earlier, LTS 2.568.1 and earlier improperly identifies file paths attempting path traversal in file parameter names, allowing attackers with Item/Configure and Item/Build permission to write files to arbitrary locations…","summary":"Jenkins 2.575 and earlier, LTS 2.568.1 and earlier improperly identifies file paths attempting path traversal in file parameter names, allowing attackers with Item/Configure and Item/Build permission to write files to arbitrary locations…","severity":"medium","cvss":4.3,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","cwe":["CWE-22"],"vendor":"jenkins","product":"jenkins","affected":["jenkins < 2.568.2","jenkins < 2.576"],"patched":["jenkins 2.576"],"published":"2026-08-05","updated":"2026-09-08","sourceUpdated":"2026-09-08T20:15:13.700","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-70428","references":[{"url":"https://www.jenkins.io/security/advisory/2026-08-05/#SECURITY-3927","label":"jenkinsci-cert@googlegroups.com"}],"tags":["nvd"],"epss":0.00323,"epssPercentile":0.25431,"ingestedAt":"2026-09-08T21:11:12.268Z","slug":"CVE-2026-70428","body":"## Overview\n\nJenkins 2.575 and earlier, LTS 2.568.1 and earlier improperly identifies file paths attempting path traversal in file parameter names, allowing attackers with Item/Configure and Item/Build permission to write files to arbitrary locations on the controller file system.\n\n## Affected\n\n- `jenkins < 2.568.2`\n- `jenkins < 2.576`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `jenkins 2.576`","depth":"sunlit","depthScore":24,"depthScoreParts":{"impact":23.7,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}