Security Advisory

CVE-2025-53658

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-07-09 15:39:31
Last updated 2025-11-04 21:12:05
Assigner jenkins
State PUBLISHED

Description

Jenkins Applitools Eyes Plugin 1.16.5 and earlier does not escape the Applitools URL on the build page, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permission.