Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-15252

Why is "Prevent Cross Site Request Forgery exploits" disabled by default?

    • Icon: Bug Bug
    • Resolution: Fixed
    • Icon: Minor Minor
    • core

      1. It's not clear why "Prevent Cross Site Request Forgery exploits" is disabled by default.
      2. The help needs to explain the downside of enabling this feature, if any.

          [JENKINS-15252] Why is "Prevent Cross Site Request Forgery exploits" disabled by default?

            danielbeck Daniel Beck
            cowwoc cowwoc
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

              Created:
              Updated:
              Resolved: