CVE-2026-52743

CVE-2026-52743 published: GoCD is a continuous deliver server. Prior to 26.1.0, the internal GoCD UI /jobStatus.json API does not validate that a requested server-assigned job ID belongs to the pipeline and stage named in the request. An authenticated user can guess job IDs and retr...

View full NVD advisory → ← Back to CVE watch