Jenkins MCP Server Plugin does not perform permission checks in multiple MCP tools
GHSA-mrpq-9jr3-rqq9 · CVE-2025-64132
Published · Modified
AI SAST
Find this class of vulnerability in your own code
Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.
Description
Jenkins MCP Server Plugin 0.84.v50ca_24ef83f2 and earlier does not perform permission checks in several MCP tools.
This allows to do the following:
Attackers with Item/Read permission can obtain information about the configured SCM in a job despite lacking Item/Extended Read permission (
getJobScm).Attackers with Item/Read permission can trigger new builds of a job despite lacking Item/Build permission (
triggerBuild).Attackers without Overall/Read permission can retrieve the names of configured clouds (
getStatus).
MCP Server Plugin 0.86.v7d3355e6a_a_18 performs permission checks for the affected MCP tools.
References
- ADVISORY https://nvd.nist.gov/vuln/detail/CVE-2025-64132
- WEB https://github.com/jenkinsci/mcp-server-plugin/commit/59de6a268b4c6844a3a9c6c55a541de183e71a97
- PACKAGE https://github.com/jenkinsci/mcp-server-plugin
- WEB https://www.jenkins.io/security/advisory/2025-10-29/#SECURITY-3622
- WEB http://www.openwall.com/lists/oss-security/2025/10/29/2
Ready to move
Start Securing
Free, no credit card | First findings in minutes