CVE-2024-23897β€”Jenkins Command Line Interface (CLI) Path Traversal Vulnerability

PUBLISHEDvulnerability record
2024-08-19 Β· last modified June 21, 2025

Metadata

CVE ID:
CVE-2024-23897
Project:
Jenkins
Product:
Jenkins Command Line Interface (CLI)
Date Added:
2024-08-19
Due Date:
2024-09-09
Last Updated:
June 21, 2025

Vulnerability Name

Jenkins Command Line Interface (CLI) Path Traversal Vulnerability

Description

Jenkins Command Line Interface (CLI) contains a path traversal vulnerability that allows attackers limited read access to certain files, which can lead to code execution.

Known To Be Used in Ransomware Campaigns?

Ransomware Status:
KNOWN

Action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Additional Notes

Related News Articles

Related Weaknesses