Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Kristy

#30764de 53,632
8.5CVSS total
Vulnerabilidades · 1
PT-2017-14602
8.5
2017-12-05
Atlassian · Bitbucket Auto-Unapprove Plugin · CVE-2017-16857
**Name of the Vulnerable Software and Affected Versions** Bitbucket auto-unapprove plugin (affected versions not specified) **Description** The issue allows an attacker to bypass the auto-unapprove plugin in Bitbucket via minimal brute-force, exploiting the asynchronous events on the back-end. This enables the attacker to merge any code into unsuspecting repositories. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.