Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-74749

[vmanager] Extract inline script blocks in ReportManager

    • Icon: Task Task
    • Resolution: Unresolved
    • Icon: Minor Minor
    • _unsorted

      Note

      While testing this plugin, evaluate whether the third-party libraries in src/main/webapp/js are compatible with CSP in restrictive mode. The plugin may need to be upgraded from jQuery 1.x to 3.x to fully function in CSP restrictive mode.

      Problems

      == Inline Script Block (Java)
      File: org/jenkinsci/plugins/vmanager/ReportManager.java
      Line: 522
      ----
      <script>");
                      end = output.indexOf("</script>
      ----
      
      == Inline Script Block (Java)
      File: org/jenkinsci/plugins/vmanager/ReportManager.java
      Line: 526
      ----
      <script>");
                      end = output.indexOf("</script>
      ----
      

      Solution

      https://www.jenkins.io/doc/developer/security/csp/#inline-javascript-blocks

          [JENKINS-74749] [vmanager] Extract inline script blocks in ReportManager

          Basil Crow created issue -
          Basil Crow made changes -
          Description Original: h4. Problems

          {noformat}
          == Inline Script Block (Java)
          File: org/jenkinsci/plugins/vmanager/ReportManager.java
          Line: 522
          ----
          <script>");
                          end = output.indexOf("</script>
          ----

          == Inline Script Block (Java)
          File: org/jenkinsci/plugins/vmanager/ReportManager.java
          Line: 526
          ----
          <script>");
                          end = output.indexOf("</script>
          ----
          {noformat}

          h4. Solution

          [https://www.jenkins.io/doc/developer/security/csp/#inline-javascript-blocks]
          New: h1. Note

          *While testing this plugin, evaluate whether the third-party libraries in {{src/main/webapp/js}} are compatible with CSP in restrictive mode. The plugin may need to be upgraded from jQuery 1.x to 3.x to fully function in CSP restrictive mode.*

          h4. Problems

          {noformat}
          == Inline Script Block (Java)
          File: org/jenkinsci/plugins/vmanager/ReportManager.java
          Line: 522
          ----
          <script>");
                          end = output.indexOf("</script>
          ----

          == Inline Script Block (Java)
          File: org/jenkinsci/plugins/vmanager/ReportManager.java
          Line: 526
          ----
          <script>");
                          end = output.indexOf("</script>
          ----
          {noformat}

          h4. Solution

          [https://www.jenkins.io/doc/developer/security/csp/#inline-javascript-blocks]

            Unassigned Unassigned
            basil Basil Crow
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: