Denial of Service Vulnerability in Jenkins by Cloudbees
CVE-2025-67635
7.5HIGH
What is CVE-2025-67635?
Jenkins versions 2.540 and earlier, as well as LTS 2.528.2 and earlier, exhibit a vulnerability that arises from inadequate closure of HTTP-based CLI connections when a connection stream is compromised. This flaw could be exploited by unauthenticated attackers, leading to disruptions in service availability and denial of service for legitimate users.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Jenkins 2.541
Jenkins 2.541
Jenkins 2.528.3 < 2.528.*