PT-2025-3751 · Zoom · Zoom Jenkins Marketplace Plugin

Published

2025-01-30

·

Updated

2026-02-05

·

CVE-2025-0142

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Zoom Jenkins Marketplace plugin version 1.3 and earlier
Description The issue concerns the storage of sensitive information in cleartext within the Zoom Jenkins Marketplace plugin. This may allow an authenticated user to disclose information via network access.
Recommendations For Zoom Jenkins Marketplace plugin version 1.3 and earlier, update to version 1.4 or later to resolve the issue.

Fix

Cleartext Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2025-0142
GHSA-JX45-XP6Q-CWJC

Affected Products

Zoom Jenkins Marketplace Plugin