CVE-2026-84645 | Jenkins Project up to 2.567.x Stapler config.xml deserialization
A vulnerability, which was classified as critical, has been found in Jenkins Project Jenkins up to 2.567.x. Affected by this vulnerability is an unknown functionality of the file config.xml of the component Stapler. The manipulation leads to deserialization.
This vulnerability is traded as CVE-2026-84645. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More