Security Advisory

CVE-2025-13472

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-03 08:42:27
Last updated 2025-12-03 14:21:10
Assigner Perforce
State PUBLISHED

Description

A fix was made in BlazeMeter Jenkins Plugin version 4.27 to allow users only with certain permissions to see the list of available resources like credential IDs, bzm workspaces and bzm project Ids. Prior to this fix, anyone could see this list as a dropdown on the Jenkins UI.