New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Resolve open vulnerabilities #259
Comments
Hi all, thanks for working on this. I see that a PR regarding CVE-2023-50771 has been merged. When will this be released to the Jenkins Plugin Servers so we can get it into our instance? |
What's going on here? Someone has to take responsibility and create a new release!!! |
@michael-doubez Can you create a new release? |
Sooo jenkins has no openid plugin without vulnerabilities? Whats going on here? xD |
Yet another case of https://xkcd.com/2347/ The plugin project is looking for maintainers by the way. For those who cannot wait, there's a release built from my fork that was merged. Or you could fork the master branch of this repo yourself and add the github action to create your own release. |
Well. I had to fix the code and the tests - silly me merging a PR that fails. At the same time, java has been switched to 11+. It took some time, mainly rebuilding my dev env after I scratched everything. |
Still one vulnerability. |
Closing issue. |
Activating CD for further contribution #276 |
Thanks a lot for the great work and fixing this 🎉 👏 |
This is incredible! Thanks for the amazing work! |
Thanks all for solving this, but how will the new release be delivered here: https://plugins.jenkins.io/oic-auth/releases/ ? |
It already is. But it takes some time to be updated in plugin files. |
Jenkins and plugins versions report
Jenkins: 2.426.2
OS: Linux - 5.10.201-191.748.amzn2.x86_64
Java: 17.0.9 - Eclipse Adoptium (OpenJDK 64-Bit Server VM)
oic-auth:2.6
What Operating System are you using (both controller, and any agents involved in the problem)?
Not relevant.
Reproduction steps
Expected Results
No vulnerabilities are shown.
Actual Results
Two open vulnerabilities are shown.
Anything else?
Hello there, I am interested if there are already any efforts made in resolving the issues?
For me it is unclear if anything is going to happen or if these issues have been reported and that is the status quo.
I guess it is fine to ask it "publicly" since they are already displayed publicly on the plugins website
Are you interested in contributing a fix?
No response
The text was updated successfully, but these errors were encountered: