Jenkins Zoho QEngine Plugin 1.0.29.vfa_cc23396502 and earlier does not mask the QEngine API Key form field, increasing the potential for attackers to observe and capture it.
Metrics
Affected Vendors & Products
References
History
Fri, 21 Mar 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-549 | |
Metrics |
cvssV3_1
|
Wed, 19 Mar 2025 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Jenkins Zoho QEngine Plugin 1.0.29.vfa_cc23396502 and earlier does not mask the QEngine API Key form field, increasing the potential for attackers to observe and capture it. | |
References |
|

Status: PUBLISHED
Assigner: jenkins
Published: 2025-03-19T15:38:13.360Z
Updated: 2025-03-21T14:08:19.969Z
Reserved: 2025-03-18T14:36:31.051Z
Link: CVE-2025-30197

Updated: 2025-03-21T14:05:41.847Z

Status : Awaiting Analysis
Published: 2025-03-19T16:15:34.060
Modified: 2025-03-21T14:15:17.837
Link: CVE-2025-30197

No data.