Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-23627

Overall.READ is sufficient to access /administrativeMonitor/hudsonHomeIsFull/

XMLWordPrintable

      This does not appear to really be an issue by itself, but it might be in the case of carelessly implemented Solution's to this problem that don't check permissions in message.jelly and expose private data on the overview page (even if checking permissions for any associated actions).

            kohsuke Kohsuke Kawaguchi
            danielbeck Daniel Beck
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: