CVE-2022-28134
CVE-2022-28134
Jenkins Bitbucket Server Integration Plugin 3.1.0 and earlier does not perform permission checks in several HTTP endpoints, allowing attackers with Overall/Read permission to create, view, and delete BitBucket Server consumers.
Affected products
Jenkins project · Jenkins Bitbucket Server Integration PluginWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →