Early access: the directory is still filling out, and every rating here is a reported experience.

Security releases

Jenkins

Jenkins Security Advisory 2026-02-18

2026-02-18 Feb 18, 2026 Source: Vendor

Imported by the Jenkins advisory catcher from https://www.jenkins.io/security/advisory/2026-02-18/. 2 SECURITY issues listed. Draft. Review before publishing.

Source of record The credited names below are quoted verbatim from the vendor's own advisory: https://www.jenkins.io/security/advisory/2026-02-18/
Are you credited here? Sign in and claim your line: it is yours immediately, no review queue. The name the vendor printed stays next to your handle for anyone to check against the advisory above, and any member who thinks a claim is wrong can refute it.

Credited

2 lines
Showing 1–2 of 2
CVE-2026-27099 BR2026-0000-008664 SECURITY-3669 unclaimed
Stored XSS vulnerability in node offline cause description
Credited as Muhammed Niazy (Wolfman), and, independently, Elie Metahri (Airbus Protect Offensive Security Team)
CVE-2026-27100 BR2026-0000-008665 SECURITY-3658 unclaimed
Build information disclosure vulnerability through Run Parameter
Credited as Suman Roy (https://sumanroy.in)