Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-20863 | Jenkins HTML Publisher Plugin vulnerability displays controller file system information in its logs |
Github GHSA |
GHSA-367v-5ppj-2hrx | Jenkins HTML Publisher Plugin vulnerability displays controller file system information in its logs |
Tue, 04 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 18 Jul 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jenkins
Jenkins html Publisher |
|
| CPEs | cpe:2.3:a:jenkins:html_publisher:*:*:*:*:*:jenkins:*:* | |
| Vendors & Products |
Jenkins
Jenkins html Publisher |
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 09 Jul 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-36 | |
| Metrics |
cvssV3_1
|
Wed, 09 Jul 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Jenkins HTML Publisher Plugin 425 and earlier displays log messages that include the absolute paths of files archived during the Publish HTML reports post-build step, exposing information about the Jenkins controller file system in the build log. | |
| References |
|
Status: PUBLISHED
Assigner: jenkins
Published:
Updated: 2025-11-04T21:11:54.112Z
Reserved: 2025-07-08T07:51:59.761Z
Link: CVE-2025-53651
Updated: 2025-11-04T21:11:54.112Z
Status : Modified
Published: 2025-07-09T16:15:24.513
Modified: 2025-11-04T22:16:22.280
Link: CVE-2025-53651
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA