CVE-2025-53658
09.07.2025, 16:15
Jenkins Applitools Eyes Plugin 1.16.5 and earlier does not escape the Applitools URL on the build page, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permission.
Vendor | Product | Version |
---|---|---|
jenkins | applitools_eyes | 𝑥 < 1.16.6 |
𝑥
= Vulnerable software versions