In OpenShift earlier versions a high severity vulnerability CVE-2026-15584 was detected. This vulnerability allows an attacker to escalate privileges and gain root access on cluster nodes. To address this issue, users should upgrade OpenShift to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-15584.
Read more Developer ToolsIn guardrails-detectors component for OpenShift in older versions a medium severity vulnerability CVE-2026-15154 was detected. This vulnerability allows a remote attacker to cause a denial of service. To address this issue, users should upgrade OpenShift to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-15154.
Read more Developer ToolsIn Terraform a high severity vulnerability CVE-2026-14468 was detected. This vulnerability allows an authenticated user to include files from outside the intended repository content in a module and then download them, potentially exposing sensitive files. To address this issue, users should upgrade Terraform to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-14468.
Read more Developer ToolsIn Forgejo versions before 15.0.3 a medium severity vulnerability CVE-2026-59102 was detected. This vulnerability allows authenticated attackers to execute arbitrary JavaScript in other users’ browsers. To address this issue, users should upgrade Forgejo to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-59102.
Read more Developer ToolsIn Plane versions 4.6.3 and earlier a critical severity vulnerability CVE-2026-38971 was detected. This vulnerability allows an attacker to access sensitive information or cause a denial of service. To address this issue, users should upgrade Plane to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-38971.
Read more Developer ToolsIn Script Security Plugin component for Jenkins versions 1402.v94c9ce464861 and earlier a high severity vulnerability CVE-2026-57280 was detected. This vulnerability allows attackers to bypass sandbox protection. To address this issue, users should upgrade Script Security Plugin to version 1402.1405.vc96e74964250 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-57280.
Read more Developer ToolsIn Script Security Plugin component for Jenkins versions 1402.v94c9ce464861 and earlier a high severity vulnerability CVE-2026-57281 was detected. This vulnerability allows attackers to execute code outside the sandbox. To address this issue, users should upgrade Script Security Plugin to version 1402.1405.vc96e74964250 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-57281.
Read more Developer ToolsIn Git client Plugin component for Jenkins versions 6.6.0 and earlier a medium severity vulnerability CVE-2026-57282 was detected. This vulnerability allows attackers who can control the name of a build’s working directory to execute arbitrary operating system commands on the agent. To address this issue, users should upgrade Git client Plugin to version 6.6.1 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-57282.
Read more Developer ToolsIn Pipeline: Groovy Plugin component for Jenkins versions 4331.v9d06ed4658ff and earlier a medium severity vulnerability CVE-2026-57283 was detected. This vulnerability allows attackers to instantiate unauthorized types through the Pipeline Snippet Generator. To address this issue, users should upgrade Pipeline: Groovy Plugin to version 4331.4333.v50a_b_076c5199 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-57283.
Read more Developer Tools