Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-69988

Commons HttpClient 3.x compatibility: Long tail

    XMLWordPrintable

Details

    • Epic
    • Resolution: Unresolved
    • Major
    • core
    • None
    • Commons HttpClient 3.x compatibility: Long tail

    Description

      Core still bundles a patched version of the deprecated Commons HttpClient 3.x library for use by plugins. This frequently confuses security scanners and is a maintenance liability. For this reason, we would like to remove this library from Jenkins core in jenkinsci/jenkins#7312.

      A systematic search of the plugin corpus was conducted in October 2022; this search revealed that a number of plugins have usages of Commons HttpClient 3.x. For compatibility with a future version of Jenkins core in which this library is removed, these plugins should either migrate their usage of Commons HttpClient 3.x to the Apache HttpComponents Client 4.x API plugin or Java 11 native HTTP client; or otherwise they should declare an explicit dependency on the Commons HttpClient 3.x API plugin.

      Attachments

        Issue Links

          Activity

            People

              Unassigned Unassigned
              basil Basil Crow
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

                Created:
                Updated: