Логотип exploitDog
bind:CVE-2024-28152
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-28152

Количество 3

Количество 3

redhat логотип

CVE-2024-28152

почти 2 года назад

In Jenkins Bitbucket Branch Source Plugin 866.vdea_7dcd3008e and earlier, except 848.850.v6a_a_2a_234a_c81, when discovering pull requests from forks, the trust policy "Forks in the same account" allows changes to Jenkinsfiles from users without write access to the project when using Bitbucket Server.

CVSS3: 6.3
EPSS: Низкий
nvd логотип

CVE-2024-28152

почти 2 года назад

In Jenkins Bitbucket Branch Source Plugin 866.vdea_7dcd3008e and earlier, except 848.850.v6a_a_2a_234a_c81, when discovering pull requests from forks, the trust policy "Forks in the same account" allows changes to Jenkinsfiles from users without write access to the project when using Bitbucket Server.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-m4rm-x2rr-357w

почти 2 года назад

Jenkins Bitbucket Branch Source Plugin has incorrect trust policy behavior for pull requests

CVSS3: 6.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2024-28152

In Jenkins Bitbucket Branch Source Plugin 866.vdea_7dcd3008e and earlier, except 848.850.v6a_a_2a_234a_c81, when discovering pull requests from forks, the trust policy "Forks in the same account" allows changes to Jenkinsfiles from users without write access to the project when using Bitbucket Server.

CVSS3: 6.3
0%
Низкий
почти 2 года назад
nvd логотип
CVE-2024-28152

In Jenkins Bitbucket Branch Source Plugin 866.vdea_7dcd3008e and earlier, except 848.850.v6a_a_2a_234a_c81, when discovering pull requests from forks, the trust policy "Forks in the same account" allows changes to Jenkinsfiles from users without write access to the project when using Bitbucket Server.

CVSS3: 6.3
0%
Низкий
почти 2 года назад
github логотип
GHSA-m4rm-x2rr-357w

Jenkins Bitbucket Branch Source Plugin has incorrect trust policy behavior for pull requests

CVSS3: 6.3
0%
Низкий
почти 2 года назад

Уязвимостей на страницу