CVE-2025-0142Active Exploitation

MEDIUMCVSS 4.3 · MEDIUM

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch affected systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

Cleartext storage of sensitive information in the Zoom Jenkins Marketplace plugin before version 1.4 may allow an authenticated user to conduct a disclosure of information via network access.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-312

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 1 signal
  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-05: 1Active Exploitation · 2026-02-05: 1Patch / Workaround · 2026-02-05: 102-05
Signal classification1 categories
Active Exploitation
1100.0%
Full discourse1 post
  • David@davidsheyi
    Active Exploitation

    2/ The malware now leverages CVE-2025-0142, targeting older Windows systems. Ensure patches are up-to-date to mitigate this risk. #CVE #Security

    Post summary

    Malware is actively exploiting CVE‑2025‑0142 on older Windows systems, and users should update patches to mitigate the risk.

    1000043
    556 followersView on X

Explore more