← לוח פגיעויות

CVE-2026-48924

בינונית 4.3

תיאור (מקור, אנגלית)

Jenkins Bitbucket OAuth Plugin 0.17 and earlier does not restrict the redirect URL after login, allowing attackers to perform phishing attacks.

מדדים

CVSS 3.1
4.3 (MEDIUM) מקור הציון: CNA CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-6/8/2026
CWE
CWE-601

מוצרים מושפעים

jenkins: bitbucket oauth

קישורים