CVE-2024-39460
Severity CVSS v4.0:
Pending analysis
Type:
CWE-532
Information Exposure Through Log Files
Publication date:
26/06/2024
Last modified:
10/10/2025
Description
Jenkins Bitbucket Branch Source Plugin 886.v44cf5e4ecec5 and earlier prints the Bitbucket OAuth access token as part of the Bitbucket URL in the build log in some cases.
Impact
Base Score 3.x
4.30
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:jenkins:bitbucket_branch_source:*:*:*:*:*:jenkins:*:* | 886.v44cf5e4ecec5 (including) |
To consult the complete list of CPE names with products and versions, see this page



