CVE-2026-10050 Vulnerability in Automic Automation 24.4.5
search cancel

CVE-2026-10050 Vulnerability in Automic Automation 24.4.5

book

Article ID: 452318

calendar_today

Updated On:

Products

Automic Automation

Issue/Introduction

Vulnerability scans on Automic Automation Engine version 24.4.5 may report critical vulnerabilities related to CVE-2026-10050. This issue involves hardcoded dependencies on Jetty 12.0.34 within the automation engine plugins.

Symptoms

  • Vulnerability scan reports critical vulnerability (CVE-2026-10050).
  • Affected components include: /bin/plugins/com.automic.agents.jar and /bin/plugins/com.automic.rest.server.jar.
  • Dependency check confirms the use of Jetty 12.0.34.

Environment

Automation Engine and Components : V 24.4.5

Cause

 Automic Automation Engine 24.4.5 relies on Jetty 12.0.34, which is currently flagged for CVE-2026-10050.

Resolution

This issue is currently under review under Defect DE210556.

  • To receive automated updates regarding the status of this defect and the availability of a fix, please subscribe to this article.
  • Do not attempt to manually update the Jetty libraries, as this may break engine functionality.