CVE-2025-24398

Publication date

2025-01-22 17:02:52

Family

jenkins

State

PUBLISHED

Description

Jenkins Bitbucket Server Integration Plugin 2.1.0 through 4.1.3 (both inclusive) allows attackers to craft URLs that would bypass the CSRF protection of any target URL in Jenkins.