CVE-2024-39460

Severity CVSS v4.0:
Pending analysis
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
26/06/2024
Last modified:
10/10/2025

Description

Jenkins Bitbucket Branch Source Plugin 886.v44cf5e4ecec5 and earlier prints the Bitbucket OAuth access token as part of the Bitbucket URL in the build log in some cases.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:jenkins:bitbucket_branch_source:*:*:*:*:*:jenkins:*:* 886.v44cf5e4ecec5 (including)