I was really badly surprise to see my password display in the URL when i click on Bitbucket from JIRA or Confluence.
https://bitbucket.org/my-atlassian-passord-in-clear/workspace/overview
that means my password is not encripted, can be found by a lot of people, is very vulnerable due to this bug and Atlassian expose it without taking the minimum of security mesure.

Can you share if you have the same vulnerability ?