CVE-2025-53743

MEDIUM4.3EPSS 0.10%

Jenkins Applitools Eyes Plugin vulnerability does not mask API keys on its job configuration form

Published: 7/9/2025Modified: 11/5/2025

Description

Jenkins Applitools Eyes Plugin 1.16.5 and earlier does not mask Applitools API keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM4.3CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

References (4)