jenkins bitbucket-oauth CVE-2019-10460 is a vulnerability in Jenkins Bitbucket Oauth
Published on October 23, 2019

Jenkins Bitbucket OAuth Plugin 0.9 and earlier stored credentials unencrypted in the global config.xml configuration file on the Jenkins master where they could be viewed by users with access to the master file system.

NVD


Products Associated with CVE-2019-10460

Want to know whenever a new CVE is published for Jenkins Bitbucket Oauth? stack.watch will email you.

 

Affected Versions

Jenkins project Jenkins Bitbucket OAuth Plugin Version 0.9 and earlier is affected by CVE-2019-10460

Exploit Probability

EPSS
0.01%
Percentile
1.36%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.