Jenkins bitbucket push and pull request plugin
This hub aggregates every CVE we track for Jenkins bitbucket push and pull request plugin. Use it to gauge the current risk picture and drill into individual advisories.
other
2
CVEs tracked
0
Critical
1
High
0
In CISA KEV
Severity distribution
HIGH1MEDIUM1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
0
2024-092026-08
Latest CVEs
The 2 most recently published vulnerabilities affecting Jenkins bitbucket push and pull request plugin.
- CVE-2026-57289Jenkins Bitbucket Push and Pull Request Plugin 3.3.8 and earlier unconditionally disables SSL/TLS certificate and hostname validation for connections sending Bearer token authenticated requests to ...4.8
- CVE-2023-41937Jenkins Bitbucket Push and Pull Request Plugin 2.4.0 through 2.8.3 (both inclusive) trusts values provided in the webhook payload, including certain URLs, and uses configured Bitbucket credentials ...7.5
Product normalization is registry-driven with AI assist and human review. How it works