CVE-2025-31728

5.5MEDIUM

Jenkins AsakusaSatellite Plugin 0.1.1 and earlier does not mask AsakusaSatellite API keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them.

发布于: 4/2/2025更新于: 4/17/2025

描述

Jenkins AsakusaSatellite Plugin 0.1.1 and earlier does not mask AsakusaSatellite API keys displayed on the job configuration form, increasing the potential for attackers to observe and capture them.

AI分析AI驱动

受影响产品

jenkinsasakusasatellite

参考资料