CVE-2026-57281
Jenkins Script Security Plugin 1402.v94c9ce464861 and earlier does not reject Groovy AST transformation annotations carrying an extensions m
CVSS
7.5
High
EPSS
0.9%
p58
KEV
—
Exploit Today
18
0-100
Published: Jun 24, 2026 · Last modified: Aug 27, 2026 · CWE-93 · CWE-693 · CWE-917
0.6%EPSS · 30 days0.9%
2026-08-172026-09-13
Jenkins Script Security Plugin 1402.v94c9ce464861 and earlier does not reject Groovy AST transformation annotations carrying an extensions member, allowing attackers able to run sandboxed Groovy scripts to execute code outside the sandbox if a suitable script is present on the classpath of the component that evaluates the script.
- www.jenkins.iohttps://www.jenkins.io/security/advisory/2026-06-24/#SECURITY-3793
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:60239
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:60246
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:60247
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:60248
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:60249
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:60250
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:60251
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:60252
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:60254
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:60256
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:60259
- access.redhat.comhttps://access.redhat.com/security/cve/CVE-2026-57281
- bugzilla.redhat.comhttps://bugzilla.redhat.com/show_bug.cgi?id=2492200
- security.access.redhat.comhttps://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-57281.json
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-911457.1 HIG—
———Activiti through 7.1.0.M6 fails to validate hash-brace deferred expressions in process variables, allowing attackers to bypass expression filtering. Attackers can inject expressions beginning with #{ that are stored and later evaluated in the full Spring context when a mail task uses variable-backed body fields, enabling method invocation on application beans.14hCVE-2026-908197.3 HIG—
———A weakness has been identified in a2aproject a2a-java 1.2.0. The affected element is the function BasePushNotificationSender.dispatchNotification of the file server-common/src/main/java/org/a2aproject/sdk/server/tasks/BasePushNotificationSender.java of the component Authorization Header Construction. This manipulation causes http response splitting. The attack can be initiated remotely. Upgrading to version 1.3.0 is sufficient to fix this issue. Patch name: 247a655043f145f6f8e3853724b6a543eaa02001. You should upgrade the affected component.14hCVE-2026-571206.5 MED—
———PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.59, execute_code sandbox mode permits runtime assembly of blocklisted dunder names and allows str.format or str.format_map to resolve dotted fields through C-level attribute access that bypasses _safe_getattr. This exposes class, qualified-name, base-class, globals, and object-dictionary attributes to prompt-influenced code when approval is automatically granted, producing a high-impact read primitive without establishing a complete in-process execution chain. This issue is fixed in praisonaiagents 1.6.59.21hCVE-2026-90957——
———Affected versions of MISP serve uploaded SVG images inline without a restrictive browser sandbox.
The commit explains that SVG files are XML documents rather than passive bitmap images. While scripts inside SVG do not execute when the SVG is rendered through a normal <img>, they can execute when the SVG is navigated to directly or embedded as a document. In that case, malicious <script> elements, event handlers, or javascript: URLs execute on the MISP origin with the viewer’s session.
The affected use cases include:
- organisation SVG logos;
- event-report SVG pictures.
Importantly, the vulnerable behavior is on the serve path, not merely the upload path: the patch notes that a malicious SVG uploaded while SVG support was enabled could remain dangerous even after uploads were later disabled.
Version affected: ≤2.5.4522hCVE-2026-909379.9 CRI—
———froxlor versions before 2.2.5 fail to validate newline characters in subdomain redirect URLs, allowing authenticated customers to inject arbitrary nginx or Apache configuration directives. Attackers can supply URLs containing literal newlines that are written verbatim into vhost config files during cron rebuild, enabling web server configuration corruption, denial of service, or hijacking of HTTP responses across hosted domains.22hCVE-2026-907676.5 MED—
——0Froxlor before 2.3.12 fails to properly validate multi-line SSH public keys in the SshKeys::add() endpoint, allowing customers to inject arbitrary lines into authorized_keys files. Attackers can inject malicious SSH key entries with option directives to gain persistent unauthorized access that survives key deletion and SSH access revocation.17h