Product
jenkins bitbucket oauth
4 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-48924
CVE-2023-24428
CVE-2023-24427
CVE-2019-10460
<= 0.17
Jenkins Bitbucket OAuth Plugin 0.17 and earlier does not restrict the redirect URL after login, allowing attackers to perform phis
< 0.13
A cross-site request forgery (CSRF) vulnerability in Jenkins Bitbucket OAuth Plugin 0.12 and earlier allows attackers to trick use
<= 0.13
Jenkins Bitbucket OAuth Plugin 0.12 and earlier does not invalidate the previous session on login.
<= 0.9
Jenkins Bitbucket OAuth Plugin 0.9 and earlier stored credentials unencrypted in the global config.xml configuration file on the J