← volver
CVE-2022-28133

CVE-2022-28133

EPSS 0.8%
Jenkins Bitbucket Server Integration Plugin 3.1.0 and earlier does not limit URL schemes for callback URLs on OAuth consumers, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to create BitBucket Server consumers.

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →