Description
Jenkins Bitbucket OAuth Plugin 0.17 and earlier does not restrict the redirect URL after login, allowing attackers to perform phishing attacks.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 27 May 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-601 | |
| Metrics |
cvssV3_1
|
Wed, 27 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Jenkins Bitbucket OAuth Plugin 0.17 and earlier does not restrict the redirect URL after login, allowing attackers to perform phishing attacks. | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2026-05-27T15:22:52.693Z
Reserved: 2026-05-26T14:50:46.813Z
Link: CVE-2026-48924
Updated: 2026-05-27T15:22:45.863Z
Status : Received
Published: 2026-05-27T15:16:32.067
Modified: 2026-05-27T17:16:42.947
Link: CVE-2026-48924
No data.
OpenCVE Enrichment
No data.
Weaknesses