PT-2025-28932 · Jenkins · Jenkins Applitools Eyes Plugin+1

Said Abdesslem Messadi

·

Published

2025-07-09

·

Updated

2025-07-10

·

CVE-2025-53743

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Jenkins Applitools Eyes Plugin versions 1.16.5 and earlier
Description: The Jenkins Applitools Eyes Plugin does not mask Applitools API keys displayed on the job configuration form. This increases the potential for attackers to observe and capture these keys.
Recommendations: Update to a newer version of the Jenkins Applitools Eyes Plugin.

Fix

Insufficiently Protected Credentials

Weakness Enumeration

Related Identifiers

BDU:2025-08586
CVE-2025-53743
GHSA-JMRV-RXGR-PHVR

Affected Products

Jenkins
Jenkins Applitools Eyes Plugin