Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-57297

A missing permission check in Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using an attacker-specified username, API key, and service key.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 8.6%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2026-57297


Contact Us

Shodan ® - All rights reserved