PT-2026-51809 · Jenkins · Jenkins Contrast Continuous Application Security Plugin

Published

2026-06-24

·

Updated

2026-06-24

·

CVE-2026-57299

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Missing permission checks in Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier allow attackers with Overall/Read permission to enumerate the names of configured Contrast metadata.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-57299

Affected Products

Jenkins Contrast Continuous Application Security Plugin