-
New Feature
-
Resolution: Won't Fix
-
Major
-
None
As of 1.502 the JSONP function is no longer available unless hudson.model.Api.INSECURE is set to true.
It would be desireable to have a option to set this to true via checkbox in the web interface ( Configure Global Security page).
Similar to the existing "Prevent Cross Site Request Forgery exploits" checkbox.
- is related to
-
JENKINS-16936 Extension point for secure users of Api
-
- Resolved
-
[JENKINS-17005] hudson.model.Api.INSECURE as checkbox setting
Link |
New:
This issue is related to |
Resolution | New: Won't Fix [ 2 ] | |
Status | Original: Open [ 1 ] | New: Resolved [ 5 ] |
Assignee | New: Lance Wicks [ lancew ] | |
Status | Original: Resolved [ 5 ] | New: Closed [ 6 ] |
Component/s | New: core [ 15593 ] | |
Component/s | Original: gui [ 15492 ] |
Workflow | Original: JNJira [ 147835 ] | New: JNJira + In-Review [ 206454 ] |
A different issue is already filed to supersede this flag, which was only meant as an emergency fallback for sites badly impacted by the change.