Jenkins Credentials Binding Plugin 687.v619cb_15e923f and earlier does not properly mask (i.e., replace with asterisks) credentials present in exception error messages that are written to the build log.
{ "versions": [ { "introduced": "0" }, { "last_affected": "687.689.v1a_f775332fc" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-53650.json"