ZeroHour
oss-securitypublished ()ingested 1
Part of a story covered by 2 sources: “Jenkins Security Advisory 2026-09-16: 13 Plugins Patched, Including GitLab, Bitbucket, Gradle, and Script Security” — merged summary and timeline →

Multiple vulnerabilities in Jenkins plugins

lowVulnerabilityimportance 30
AI summary · glm-5.3-flash

Jenkins releases security fixes for multiple plugins including Bitbucket, GitLab, Gitee, Coverage, and Gradle integrations.

Jenkins published security updates for several plugins, including Bitbucket Push and Pull Request Plugin 4.1.0, Bitbucket Server Integration Plugin 6.0.2, Coverage Plugin 3.3361.v0626103a_67e6, Gitee Plugin 1304.v2702f1d71cde, GitLab Plugin 1.2152.veec0897048b_0, and the Gradle Plugin. The announcement is a routine open-source security release notice without exploit details.

  • Multiple Jenkins plugins received security fix releases
  • Affected plugins include Bitbucket, GitLab, Gitee, Coverage, and Gradle
  • Routine coordinated disclosure via oss-security mailing list
VendorsJenkins
ProductsJenkins
OrganizationsJenkins
Full article

Posted by Kevin Guerroudj on Sep 16 Jenkins is an open source automation server which enables developers around the world to reliably build, test, and deploy their software. The following releases contain fixes for security vulnerabilities: * Bitbucket Push and Pull Request Plugin 4.1.0 * Bitbucket Server Integration Plugin 6.0.2 * Coverage Plugin 3.3361.v0626103a_67e6 * Gitee Plugin 1304.v2702f1d71cde * GitLab Plugin 1.2152.veec0897048b_0 * Gradle Plugin...

This source does not provide full text. Read it at seclists.org.