ZeroHour

CVE-2025-53660

CVSS 3.1
4.3 medium
EPSS
<1%p15
Published
()
Modified
Description

Jenkins QMetry Test Management Plugin 1.13 and earlier does not mask Qmetry Automation API Keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them.

Vendors
jenkins
Products
qmetry test management
Weakness
CWE-256, CWE-522
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.