CVE-2024-39460: Jenkins Bitbucket Branch Source

Medium severity, CVSS 4.3. EPSS: 0.5% chance of exploitation in the next 30 days.

Jenkins Bitbucket Branch Source Plugin 886.v44cf5e4ecec5 and earlier prints the Bitbucket OAuth access token as part of the Bitbucket URL in the build log in some cases.

Affected products

  • Jenkins Bitbucket Branch Source: up to and including 886.v44cf5e4ecec5

Published 2024-06-26. Last modified 2026-06-17.