• Icon: Bug Bug
    • Resolution: Fixed
    • Icon: Major Major
    • core
    • None

      In Jenkins 1.480.2.1 it is possible to create a view called '..'. Since actions on a view include the view name in the URL, '..' being interpreted as directory traversal is an issue. As such, it is not possible to view, edit, or delete a view with this name via standard methods.

      To read more, see my post on StackOverflow.
      http://stackoverflow.com/questions/14445729/how-to-delete-a-view-named/

          [JENKINS-16608] View name allows '..'

          Jeffrey Fairley created issue -
          Jeffrey Fairley made changes -
          Description Original: In Jenkins 1.480.2.1 it is possible to create a view called '..'. Since actions on a view include the view name in the URL, '..' being interpreted as directory traversal is an issue. As such, it is not possible to view, edit, or delete a view with this name via standard methods.

          To read more, see my post on StackOverflow.
          New: In Jenkins 1.480.2.1 it is possible to create a view called '..'. Since actions on a view include the view name in the URL, '..' being interpreted as directory traversal is an issue. As such, it is not possible to view, edit, or delete a view with this name via standard methods.

          To read more, see my post on StackOverflow.
          http://stackoverflow.com/questions/14445729/how-to-delete-a-view-named/
          Jacob Robertson made changes -
          Component/s New: core [ 15593 ]
          Component/s Original: view-job-filters [ 15736 ]
          Assignee Original: Jacob Robertson [ jacob_robertson ]
          sogabe made changes -
          Assignee New: sogabe [ sogabe ]
          SCM/JIRA link daemon made changes -
          Resolution New: Fixed [ 1 ]
          Status Original: Open [ 1 ] New: Resolved [ 5 ]
          R. Tyler Croy made changes -
          Workflow Original: JNJira [ 147432 ] New: JNJira + In-Review [ 192403 ]

            sogabe sogabe
            jfairley Jeffrey Fairley
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated:
              Resolved: