GHSA-2x3g-rr4w-4qrp
LOWCVE-2025-30197Jenkins Zoho QEngine Plugin 1.0.29.vfacc23396502 and earlier does not mask the QEngine API Key form field, increasing the potential for attackers to observe and capture it.
- Affected
- < 1.0.31.v4a
- Fixed in
- 1.0.31.v4a_b_1db_6d6a_f2
- Weakness
- CWE-522
- Published
- 2025-03-19
- Source
- github