tag
CLI
CVE-2024-23897
web
CRITICAL 9.8
KEV
Ransomware
EPSS 100%
Jenkins CLI Arbitrary File Read to RCE (CVE-2024-23897)
CVE-2024-23897 is an arbitrary file read vulnerability in the Jenkins CLI command parser. The parser expands arguments that start with @ and can disclose controller-local files to unauthenticated attackers in common deployments. This disclosure can expose…
Patched
2026-05-17