ZeroHour

CVE-2025-53655

CVSS 3.1
5.3 medium
EPSS
<1%p24
Published
()
Modified
Description

Jenkins Statistics Gatherer Plugin 2.0.3 and earlier does not mask the AWS Secret Key on the global configuration form, increasing the potential for attackers to observe and capture it.

Vendors
jenkins
Products
statistics gatherer
Weakness
CWE-256
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.