-
Task
-
Resolution: Unresolved
-
Minor
Note
While testing this plugin, evaluate whether the third-party libraries in src/main/webapp/js are compatible with CSP in restrictive mode. The plugin may need to be upgraded from jQuery 1.x to 3.x to fully function in CSP restrictive mode.
Problem
== Inline Script Block Line: 62 ---- <script type="text/javascript"> window.depview.editEnabled=${it.isEditFunctionInJSViewEnabled()}; window.depview.projectNameStripRegex=/${it.getProjectNameStripRegex()}/g; window.depview.projectNameStripRegexGroup=${it.getProjectNameStripRegexGroup()}; </script> ----
Solution
https://www.jenkins.io/doc/developer/security/csp/#inline-javascript-blocks
- links to
[JENKINS-74135] [depgraph-view] Extract inline script block in hudson/plugins/depgraph_view/AbstractDependencyGraphAction/jsplumb.jelly
Assignee | Original: Guido Grazioli [ ggrazioli ] |
Description |
Original:
h4. Problems {noformat} == Inline Script Block Line: 62 ---- <script type="text/javascript"> window.depview.editEnabled=${it.isEditFunctionInJSViewEnabled()}; window.depview.projectNameStripRegex=/${it.getProjectNameStripRegex()}/g; window.depview.projectNameStripRegexGroup=${it.getProjectNameStripRegexGroup()}; </script> ---- == Inline Script Block Line: 62 ---- <script type="text/javascript"> window.depview.editEnabled=${it.isEditFunctionInJSViewEnabled()}; window.depview.projectNameStripRegex=/${it.getProjectNameStripRegex()}/g; window.depview.projectNameStripRegexGroup=${it.getProjectNameStripRegexGroup()}; </script> ---- {noformat} h4. Solution [https://www.jenkins.io/doc/developer/security/csp/#inline-javascript-blocks] |
New:
h4. Problem {noformat} == Inline Script Block Line: 62 ---- <script type="text/javascript"> window.depview.editEnabled=${it.isEditFunctionInJSViewEnabled()}; window.depview.projectNameStripRegex=/${it.getProjectNameStripRegex()}/g; window.depview.projectNameStripRegexGroup=${it.getProjectNameStripRegexGroup()}; </script> ---- {noformat} h4. Solution [https://www.jenkins.io/doc/developer/security/csp/#inline-javascript-blocks] |
Summary | Original: [depgraph-view] Extract inline script blocks in hudson/plugins/depgraph_view/AbstractDependencyGraphAction/jsplumb.jelly | New: [depgraph-view] Extract inline script block in hudson/plugins/depgraph_view/AbstractDependencyGraphAction/jsplumb.jelly |
Description |
Original:
h4. Problem {noformat} == Inline Script Block Line: 62 ---- <script type="text/javascript"> window.depview.editEnabled=${it.isEditFunctionInJSViewEnabled()}; window.depview.projectNameStripRegex=/${it.getProjectNameStripRegex()}/g; window.depview.projectNameStripRegexGroup=${it.getProjectNameStripRegexGroup()}; </script> ---- {noformat} h4. Solution [https://www.jenkins.io/doc/developer/security/csp/#inline-javascript-blocks] |
New:
h1. Note
*While testing this plugin, evaluate whether the third-party libraries in {{src/main/webapp/js}} are compatible with CSP in restrictive mode. The plugin may need to be upgraded from jQuery 1.x to 3.x to fully function in CSP restrictive mode.* h4. Problem {noformat} == Inline Script Block Line: 62 ---- <script type="text/javascript"> window.depview.editEnabled=${it.isEditFunctionInJSViewEnabled()}; window.depview.projectNameStripRegex=/${it.getProjectNameStripRegex()}/g; window.depview.projectNameStripRegexGroup=${it.getProjectNameStripRegexGroup()}; </script> ---- {noformat} h4. Solution [https://www.jenkins.io/doc/developer/security/csp/#inline-javascript-blocks] |
Assignee | New: Shlomo [ shlomo_dahan ] |
Status | Original: Open [ 1 ] | New: In Progress [ 3 ] |
Remote Link | New: This issue links to "PR (Web Link)" [ 30291 ] |
Status | Original: In Progress [ 3 ] | New: In Review [ 10005 ] |