Jenkins Sensedia Api Platform tools Plugin 1.0 does not mask the Sensedia API Manager integration token on the global configuration form, increasing the potential for attackers to observe and capture it.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 01 Oct 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jenkins
Jenkins sensedia Api Platform Tools |
|
| CPEs | cpe:2.3:a:jenkins:sensedia_api_platform_tools:1.0:*:*:*:*:jenkins:*:* | |
| Vendors & Products |
Jenkins
Jenkins sensedia Api Platform Tools |
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 09 Jul 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-256 | |
| Metrics |
cvssV3_1
|
Wed, 09 Jul 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Jenkins Sensedia Api Platform tools Plugin 1.0 does not mask the Sensedia API Manager integration token on the global configuration form, increasing the potential for attackers to observe and capture it. | |
| References |
|
Status: PUBLISHED
Assigner: jenkins
Published: 2025-07-09T15:39:40.807Z
Updated: 2025-11-04T21:12:26.666Z
Reserved: 2025-07-08T07:51:59.764Z
Link: CVE-2025-53674
Updated: 2025-11-04T21:12:26.666Z
Status : Modified
Published: 2025-07-09T16:15:26.927
Modified: 2025-11-04T22:16:25.527
Link: CVE-2025-53674
No data.