Vulnerability Description
Jenkins Credentials Binding Plugin 687.v619cb_15e923f and earlier does not properly mask (i.e., replace with asterisks) credentials present in exception error messages that are written to the build log.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Jenkins | Credentials Binding | <= 687.689.v1a_f775332fc |
Related Weaknesses (CWE)
References
- https://www.jenkins.io/security/advisory/2025-07-09/#SECURITY-3499Vendor Advisory
- http://www.openwall.com/lists/oss-security/2025/07/09/4
FAQ
What is CVE-2025-53650?
CVE-2025-53650 is a vulnerability with a CVSS score of 7.3 (HIGH). Jenkins Credentials Binding Plugin 687.v619cb_15e923f and earlier does not properly mask (i.e., replace with asterisks) credentials present in exception error messages that are written to the build lo...
How severe is CVE-2025-53650?
CVE-2025-53650 has been rated HIGH with a CVSS base score of 7.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-53650?
Check the references section above for vendor advisories and patch information. Affected products include: Jenkins Credentials Binding.