CVE-2026-44845
Received Received - Intake

Authenticated Jinja2 Injection in JumpServer Leading to RCE

Vulnerability report for CVE-2026-44845, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-17

Last updated on: 2026-08-17

Assigner: GitHub, Inc.

Description

JumpServer is an open source bastion host and an operation and maintenance security audit system. Prior to 4.10.17, an authenticated administrator with Applet Host management and deployment permissions can inject Jinja2 expressions into the IP/Host field or Core Service Address field, causing Ansible to evaluate ansible_host inventory data or playbook variables during Applet Host deployment and execute arbitrary commands on the JumpServer control node. This issue is fixed in version 4.10.17.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-17
Last Modified
2026-08-17
Generated
2026-08-18
AI Q&A
2026-08-18
EPSS Evaluated
N/A
NVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
jumpserver jumpserver 4.10.17

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-1336 The product uses a template engine to insert or process externally-influenced input, but it does not neutralize or incorrectly neutralizes special elements or syntax that can be interpreted as template expressions or other code directives when processed by the engine.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability in JumpServer allows an authenticated administrator with specific permissions to inject Jinja2 expressions into the IP/Host or Core Service Address fields. During Applet Host deployment, Ansible evaluates these expressions, enabling arbitrary command execution on the JumpServer control node.

Impact Analysis

An attacker with administrator privileges could exploit this to execute malicious commands on the JumpServer control node, potentially leading to unauthorized access, data breaches, or system compromise. The impact depends on the permissions of the control node.

Compliance Impact

This vulnerability could lead to unauthorized access or data breaches, violating compliance requirements such as GDPR (data protection) or HIPAA (health information security). Organizations using affected versions may face regulatory penalties or reputational damage.

Mitigation Strategies

Upgrade JumpServer to version 4.10.17 or later to address the vulnerability. Ensure only trusted administrators have Applet Host management and deployment permissions.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-44845. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart