Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-74743

[collabnet] Extract inline script block in CNAuthenticationEntryPoint

XMLWordPrintable

      Note

      While testing this plugin, evaluate whether the third-party libraries in src/main/webapp/scripts are compatible with CSP in restrictive mode. The plugin may need to be upgraded from jQuery 1.x to 3.x to fully function in CSP restrictive mode.

      Problem

      == Inline Script Block (Java)
      File: hudson/plugins/collabnet/auth/CNAuthenticationEntryPoint.java
      Line: 57
      ----
      <script>window.location.replace('%1$s');</script>
      ----
      

      Solution

      https://www.jenkins.io/doc/developer/security/csp/#inline-javascript-blocks

            Unassigned Unassigned
            basil Basil Crow
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: