⚡ Exploit-DB.ai CRITICAL
CRITICAL

CVE-2024-23897

Published: March 18, 2026 · Source: National Vulnerability Database (NVD)

⚡ AI Threat Assessment

Jenkins CLI arbitrary file read enabling RCE via cryptographic key extraction. Disable Jenkins CLI or upgrade immediately. This affects millions of CI/CD pipelines and was actively exploited for supply chain attacks.

📋 Official Description

Jenkins arbitrary file read vulnerability through the built-in command line interface (CLI) allows attackers to read arbitrary files on the Jenkins controller file system.

Get Real-Time CVE Alerts

Supernova subscribers receive AI-triaged CVE alerts the moment they're published — before the PoC drops.

Start Supernova — $99/mo →