CVE-2025-31728

Jenkins AsakusaSatellite Plugin 0.1.1 and earlier does not mask AsakusaSatellite API keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them.
Configurations

Configuration 1 (hide)

cpe:2.3:a:jenkins:asakusasatellite:*:*:*:*:*:jenkins:*:*

History

No history.

Information

Published : 2025-04-02 15:16

Updated : 2025-04-17 14:35


NVD link : CVE-2025-31728

Mitre link : CVE-2025-31728

CVE.ORG link : CVE-2025-31728


JSON object : View

Products Affected

jenkins

  • asakusasatellite
CWE
CWE-549

Missing Password Field Masking