CVE-2025-53674

Description

Jenkins Sensedia Api Platform tools Plugin 1.0 does not mask the Sensedia API Manager integration token on the global configuration form, increasing the potential for attackers to observe and capture it.

Risk Information

Base Score
5.3
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS Score
Exploitation Probability
0.052

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2025-53673,CVE-2025-53674 are affected in Jenkins - sensedia-api-platform 1.0Windows
Vulnerabilities CVE-2025-53673,CVE-2025-53674 are affected in Jenkins - sensedia-api-platform for Linux 1.0Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234