AuraTracer智迹闻
中文

EVENT DOSSIER

Jenkins PersistenceRoot deserialization remote code execution vulnerability (CVE-2026-84645) security risk notification

2026-09-04 08:00 Cybersecurity 🔥 42.2 heat score
1sources
1days unfolding
42.2heat score
5mentions
SummaryAI generated

The Jenkins software has a CVE-2026-84645 vulnerability. Attackers can exploit this to execute remote code deserialization attacks, which may lead to complete control of the system. Security authorities have issued a risk notice reminding users to update or fix the vulnerability promptly.

Related eventsRELATED EVENTS
Key entitiesKEY ENTITIES
CERTCloudBeesIncJenkinsQianxin

Coverage · reports per dayLANGUAGE SPLIT

Entity relations
CERT × CloudBees1CERT × Inc1CERT × Jenkins1CERT × Qianxin1CloudBees × Inc1CloudBees × Jenkins1

SignalsSIGNALS

Keyword heat
  • Jenkins1
  • CloudBees1
  • Inc1
  • Qianxin1
  • CERT1

All reports (1)SOURCES

安全内参 zh 2026-09-04 08:00

Security Advisory on Jenkins PersistenceRoot Deserialization Remote Code Execution Vulnerability (CVE-2026-84645)

# Security alert regarding the Jenkins PersistenceRoot deserialization remote code execution vulnerability (CVE-2026-84645) ## Overview of the vulnerability | Item | Description | |------|------------| | Vulnerability name | Jenkins PersistenceRoot deserialization remote code execution vulnerability | | Vulnerability number | QVD-2026-61242, CVE-2026-84645 | | Publicity date | 2026-09-02 | | Impact scale | Over 100,000 cases | | CIBNET rating | High risk | | CVSS score | 8.8 | | Threat type | Code execution | | Likelihood of exploitation | High | | POC status | Not disclosed | | Outdated exploitation status | Not found | ## Description of the harm Attackers can exploit the Jenkins operating system user identity to execute…