CVE-2025-53658
Jenkins Applitools Eyes Plugin 1.16.5 and earlier does not escape the Applitools URL on the build page, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permission.
Vendor
Product
CWE
Yayın Tarihi
2025-07-09 16:15:25
Güncelleme
2025-11-04 22:16:23
Source Identifier
jenkinsci-cert@googlegroups.com
KEV Date Added
-