← Vulnerability feed

Vulnerability record · CVE-2026-92129 · published 16 September 2026

CVE-2026-92129: Jenkins script security vulnerability

Jenkins · Script Security

Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier does not check calls from sandboxed scripts to methods added dynamically to a class at runtime, allowing attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute code outside the sandbox.

7.5 CVSS 3.1 High EPSS 0.48% · top 60.8% CWE-693 · CWE-693
7.5CVSS 3.1 base score
0.48%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
21 Sep 2026Last modified by NVD

Description

Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier does not check calls from sandboxed scripts to methods added dynamically to a class at runtime, allowing attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute code outside the sandbox.

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2026-92129 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.9CVE-2019-1003029Jenkins Script Security Plugin sandbox bypass allows code executionThe Jenkins Script Security Plugin 1.53 and earlier fails to properly enforce its Groovy sandbox in GroovySandbox.java and SecureGroovyScript.java, l…KEVEPSS 74%analysed9.9CVE-2022-43401Jenkins script security vulnerabilityA sandbox bypass vulnerability involving various casts performed implicitly by the Groovy language runtime in Jenkins Script Security Plugin 1183.v77…EPSS 1.3%9.9CVE-2022-43403Jenkins script security vulnerabilityA sandbox bypass vulnerability involving casting an array-like value to an array type in Jenkins Script Security Plugin 1183.v774b_0b_0a_a_451 and ea…EPSS 1.6%9.9CVE-2022-43404Jenkins script security vulnerabilityA sandbox bypass vulnerability involving crafted constructor bodies and calls to sandbox-generated synthetic constructors in Jenkins Script Security …EPSS 1.2%9.9CVE-2020-2279Jenkins script security vulnerabilityA sandbox bypass vulnerability in Jenkins Script Security Plugin 1.74 and earlier allows attackers with permission to define sandboxed scripts to pro…EPSS 2.1%9.9CVE-2019-10431Jenkins script security code injection vulnerabilityA sandbox bypass vulnerability in Jenkins Script Security Plugin 1.64 and earlier related to the handling of default parameter expressions in constru…EPSS 2.7%9.8CVE-2024-34144Jenkins Script Security Plugin sandbox bypass via crafted constructorsJenkins Script Security Plugin 1335.vf07d9ce377a_e and earlier fails to properly restrict crafted constructor bodies, allowing a sandbox bypass. An a…EPSS 48%analysed9.8CVE-2019-1003040Jenkins script security vulnerabilityA sandbox bypass vulnerability in Jenkins Script Security Plugin 1.55 and earlier allows attackers to invoke arbitrary constructors in sandboxed scri…EPSS 3.4%

Source: NIST National Vulnerability Database (record CVE-2026-92129), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.