← Back to CVE List

CVE-2024-28152

Published: 2024-03-06T17:15Z
Last Modified: 2024-11-21T09:05Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In Jenkins Bitbucket Branch Source Plugin 866.vdea_7dcd3008e and earlier, except 848.850.v6a_a_2a_234a_c81, when discovering pull requests from forks, the trust policy "Forks in the same account" allows changes to Jenkinsfiles from users without write access to the project when using Bitbucket Server. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt