Vulnerabilities
Vulnerable Software
Jenkins Bitbucket OAuth Plugin 0.17 and earlier does not restrict the redirect URL after login, allowing attackers to perform phishing attacks.
CVSS Score
4.3
EPSS Score
0.002
Published
2026-05-27
A cross-site request forgery (CSRF) vulnerability in Jenkins Bitbucket OAuth Plugin 0.12 and earlier allows attackers to trick users into logging in to the attacker's account.
CVSS Score
5.7
EPSS Score
0.005
Published
2023-01-26
Jenkins Bitbucket OAuth Plugin 0.12 and earlier does not invalidate the previous session on login.
CVSS Score
9.8
EPSS Score
0.011
Published
2023-01-26


Contact Us

Shodan ® - All rights reserved