In Jenkins Bitbucket Branch Source... CVE-2024-28152

- AV AC AU C I A
发布: 2024-03-06
修订: 2024-03-06

In Jenkins Bitbucket Branch Source Plugin 866.vdea_7dcd3008e and earlier, except 848.850.v6a_a_2a_234a_c81, when discovering pull requests from forks, the trust policy "Forks in the same account" allows changes to Jenkinsfiles from users without write access to the project when using Bitbucket Server.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息