- 28 2月, 2015 2 次提交
-
-
由 Kohsuke Kawaguchi 提交于
[SECURITY-167] Plugin manager was also vulnerable to XXE attacks.
-
由 James Nord 提交于
Although the plugiun manager was vulnerable getting information out of Jenkins was harder - however it would still be possible to do bad things such as reading from /dev/zero on Linux
-
- 08 2月, 2015 1 次提交
-
-
由 Jesse Glick 提交于
[SECURITY-162] Forbid symlink attacks from artifact archiving
-
- 07 2月, 2015 2 次提交
-
-
由 Robert Sandell 提交于
[SECURITY-165] blacklist the document xpath function for use in Api
-
由 Jesse Glick 提交于
-
- 06 2月, 2015 10 次提交
-
-
由 Robert Sandell 提交于
-
由 Robert Sandell 提交于
Review comments fixed: Added license header Reformat the issue comment Restricted NoExternalUse toLowerCase in English locale lesser resolution of declared exception from the test
-
由 Jesse Glick 提交于
@RandomlyFails
-
由 Jesse Glick 提交于
-
由 Jesse Glick 提交于
-
由 Ryan Campbell 提交于
[SECURITY-166] Make UI tests work across Jenkins versions
-
由 Jesse Glick 提交于
[SECURITY-125] Matrix project script security
-
由 Ryan Campbell 提交于
-
由 Robert Sandell 提交于
-
由 James Nord 提交于
[SECURITY-167] Followup tweaks to address review comments.
-
- 05 2月, 2015 24 次提交
-
-
由 Jesse Glick 提交于
-
由 James Nord 提交于
-
由 Ryan Campbell 提交于
Fixes for SECURITY-166
-
由 James Nord 提交于
Addresses some comments received after the original fix was merged.
-
由 Jesse Glick 提交于
-
由 James Nord 提交于
SECURITY-167 defend against XXE attacks in core https://issues.jenkins-ci.org/browse/SECURITY-167
-
由 Jesse Glick 提交于
Reproducible for example via HelpLinkTest.testMatrixConfig. Otherwise have: matrix-project → script-security → matrix-auth → windows-slaves → antisamy-markup-formatter → matrix-project Tried to come up with a generic way of doing this automatically, but failed. Just because we bundle a particular build of some plugin does not mean it was built against anything recent, and for use on older cores it may well need some of those implicit dependencies.
-
由 Jesse Glick 提交于
Otherwise FingerprinterTest.matrixDependency throws an AbstractMethodError.
-
由 Jesse Glick 提交于
-
由 Jesse Glick 提交于
(cherry picked from commit 0bd831e2)
-
由 Jesse Glick 提交于
(cherry picked from commit 747d550c)
-
由 Jesse Glick 提交于
(cherry picked from commit 9259f873)
-
由 Jesse Glick 提交于
(cherry picked from commit 071951e6)
-
由 Jesse Glick 提交于
(cherry picked from commit b628b472)
-
由 Jesse Glick 提交于
(cherry picked from commit 04aace98)
-
由 Jesse Glick 提交于
(cherry picked from commit e4ba41d5)
-
由 Jesse Glick 提交于
(cherry picked from commit 5d9e4d7b)
-
由 Jesse Glick 提交于
(cherry picked from commit b9d8f554)
-
由 Jesse Glick 提交于
(cherry picked from commit 42195d83)
-
由 Jesse Glick 提交于
(cherry picked from commit dbed3044) Conflicts: core/src/main/java/hudson/model/Run.java
-
由 Jesse Glick 提交于
(cherry picked from commit d72fda46)
-
由 Jesse Glick 提交于
(cherry picked from commit e405078e)
-
由 Jesse Glick 提交于
(cherry picked from commit 4aad749c) Conflicts: core/src/main/java/hudson/matrix/MatrixBuild.java core/src/main/java/hudson/matrix/MatrixConfiguration.java core/src/main/java/hudson/matrix/MatrixProject.java core/src/main/resources/hudson/matrix/MatrixProject/configure-entries.jelly
-
由 Ryan Campbell 提交于
-
- 04 2月, 2015 1 次提交
-
-
由 Ryan Campbell 提交于
-