CVE-2025-30197 | Zoho QEngine Plugin up to 1.0.29.vfa_cc23396502 on Jenkins QEngine API Key Form Field missing password field masking
A vulnerability, which was classified as problematic, has been found in Zoho QEngine Plugin up to 1.0.29.vfa_cc23396502 on Jenkins. Affected by this issue is some unknown functionality of the component QEngine API Key Form Field. The manipulation leads to missing password field masking.
This vulnerability is handled as CVE-2025-30197. Attacking locally is a requirement. There is no exploit available.