-
Type:
Task
-
Resolution: Unresolved
-
Priority:
Minor
-
Component/s: depgraph-view-plugin
Note
While testing this plugin, evaluate whether the third-party libraries in src/main/webapp/js are compatible with CSP in restrictive mode. The plugin may need to be upgraded from jQuery 1.x to 3.x to fully function in CSP restrictive mode.
Problem
== Inline Script Block
Line: 62
----
<script type="text/javascript">
window.depview.editEnabled=${it.isEditFunctionInJSViewEnabled()};
window.depview.projectNameStripRegex=/${it.getProjectNameStripRegex()}/g;
window.depview.projectNameStripRegexGroup=${it.getProjectNameStripRegexGroup()};
</script>
----
Solution
https://www.jenkins.io/doc/developer/security/csp/#inline-javascript-blocks
- links to