CVE-2025-53655
—CVSS 3.1
5.3 medium
EPSS
<1%p24
Published
()
Modified
Description
Jenkins Statistics Gatherer Plugin 2.0.3 and earlier does not mask the AWS Secret Key on the global configuration form, increasing the potential for attackers to observe and capture it.
- Vendors
- jenkins
- Products
- statistics gatherer
- Weakness
- CWE-256
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.