Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-31611

Unprivileged user may access plugin uninstall form

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Fixed
    • Icon: Minor Minor
    • core
    • None

      Through forceful browsing, it is possible to reach the uninstall page for plugins, e.g. http://$JENKINS_URL/pluginManager/plugin/saml/uninstall

      Submitting the form results in an accessed denied exception. This form should not be reachable for normal users.

            danielbeck Daniel Beck
            jec Josh Cook
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: