/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2024-43044

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-43044

Severity

8.8

High

CVSS V3

Description

Jenkins 2.470 and earlier, LTS 2.452.3 and earlier allows agent processes to read arbitrary files from the Jenkins controller file system by using the ClassLoaderProxy#fetchJar method in the Remoting library.

References

  • https://images.chainguard.dev/security/CGA-4828-r7m8-fq87

Affected packages


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing