PT-2026-51809 · Jenkins · Jenkins Contrast Continuous Application Security Plugin
Published
2026-06-24
·
Updated
2026-06-24
·
CVE-2026-57299
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Missing permission checks in Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier allow attackers with Overall/Read permission to enumerate the names of configured Contrast metadata.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Jenkins Contrast Continuous Application Security Plugin