CVE-2025-53660

Jenkins QMetry Test Management Plugin 1.13 and earlier does not mask Qmetry Automation API Keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:jenkins:qmetry_test_management:*:*:*:*:*:jenkins:*:*

History

18 Jul 2025, 17:38

Type Values Removed Values Added
References () https://www.jenkins.io/security/advisory/2025-07-09/#SECURITY-3532 - () https://www.jenkins.io/security/advisory/2025-07-09/#SECURITY-3532 - Vendor Advisory
First Time Jenkins
Jenkins qmetry Test Management
CPE cpe:2.3:a:jenkins:qmetry_test_management:*:*:*:*:*:jenkins:*:*

09 Jul 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-09 16:15

Updated : 2025-07-18 17:38


NVD link : CVE-2025-53660

Mitre link : CVE-2025-53660


JSON object : View

Products Affected

jenkins

  • qmetry_test_management
CWE

No CWE.