ZeroHour

CVE-2025-31728

CVSS 3.1
5.5 medium
EPSS
<1%p20
Published
()
Modified
Description

Jenkins AsakusaSatellite Plugin 0.1.1 and earlier does not mask AsakusaSatellite API keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them.

Vendors
jenkins
Products
asakusasatellite
Weakness
CWE-549
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.