Jenkins Applitools Eyes Plugin 1.16.5 and earlier does not mask Applitools API keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them.
References
Link | Resource |
---|---|
https://www.jenkins.io/security/advisory/2025-07-09/#SECURITY-3510 | Vendor Advisory |
Configurations
History
10 Sep 2025, 15:50
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.jenkins.io/security/advisory/2025-07-09/#SECURITY-3510 - Vendor Advisory | |
CPE | cpe:2.3:a:jenkins:applitools_eyes:*:*:*:*:*:jenkins:*:* | |
First Time |
Jenkins applitools Eyes
Jenkins |
10 Jul 2025, 13:17
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-09 16:15
Updated : 2025-09-10 15:50
NVD link : CVE-2025-53743
Mitre link : CVE-2025-53743
CVE.ORG link : CVE-2025-53743
JSON object : View
Products Affected
jenkins
- applitools_eyes
CWE
CWE-522
Insufficiently Protected Credentials