Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-28247

Can bypass permission check of CopyArtifact with WorkflowJob

      The permission check of copyartifact doesn't work with workflow:

      • Copyartifact performs runtime permission check only when the project name is specified with variables.
        • Variables in workflow jobs are resolved before passed to builders.
        • Even if variable expression is passed to builders, builder cannot resolve that variables (see JENKINS-26694)
      • Configuration-time permission check doesn't performed as it performs only when triggered via stapler.

          [JENKINS-28247] Can bypass permission check of CopyArtifact with WorkflowJob

          ikedam created issue -
          ikedam made changes -
          Link New: This issue is related to JENKINS-24888 [ JENKINS-24888 ]
          ikedam made changes -
          Link New: This issue is related to JENKINS-23475 [ JENKINS-23475 ]
          Jesse Glick made changes -
          Labels New: workflow
          R. Tyler Croy made changes -
          Workflow Original: JNJira [ 163078 ] New: JNJira + In-Review [ 181086 ]
          Andrew Bayer made changes -
          Labels Original: workflow New: pipeline workflow
          Andrew Bayer made changes -
          Labels Original: pipeline workflow New: pipeline
          ikedam made changes -
          Link New: This issue relates to SECURITY-988 [ SECURITY-988 ]
          ikedam made changes -
          Released As New: https://github.com/jenkinsci/copyartifact-plugin/blob/master/CHANGELOG.adoc#144
          Assignee New: ikedam [ ikedam ]
          Resolution New: Fixed [ 1 ]
          Status Original: Open [ 1 ] New: Fixed but Unreleased [ 10203 ]
          ikedam made changes -
          Status Original: Fixed but Unreleased [ 10203 ] New: Closed [ 6 ]

            ikedam ikedam
            ikedam ikedam
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: