CVE-2024-34146: Jenkins Git Server

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

Jenkins Git server Plugin 114.v068a_c7cc2574 and earlier does not perform a permission check for read access to a Git repository over SSH, allowing attackers with a previously configured SSH public key but lacking Overall/Read permission to access these repositories.

Affected products

  • Jenkins Git Server: up to and including 114.v068a_c7cc2574

Published 2024-05-02. Last modified 2026-06-17.