Branch: refs/heads/master Home: https://github.com/jenkinsci/openid-plugin Commit: 5a91a74a94e44d87cd61afc2441aab42b7542bf0 https://github.com/jenkinsci/openid-plugin/commit/5a91a74a94e44d87cd61afc2441aab42b7542bf0 Author: Gavin Mogan <g...@gavinmogan.com> Date: 2020-03-09 (Mon, 09 Mar 2020)
Changed paths: M src/main/java/hudson/plugins/openid/OpenIdSsoSecurityRealm.java Log Message: ----------- require post and admin - SECURITY-1084 / CVE-2019-1003098 (CSRF) and CVE-2019-1003099 (permission check) Commit: 81da0784bdc74d37971322405a5c1dfb21f663c5 https://github.com/jenkinsci/openid-plugin/commit/81da0784bdc74d37971322405a5c1dfb21f663c5 Author: Wadeck Follonier <wad...@users.noreply.github.com> Date: 2020-03-11 (Wed, 11 Mar 2020) Changed paths: M src/main/java/hudson/plugins/openid/OpenIdSsoSecurityRealm.java Log Message: ----------- Merge pull request #18 from halkeye/SECURITY-1084 require post and admin - SECURITY-1084 / CVE-2019-1003098 (CSRF) and CVE-2019-1003099 (permission check) Compare: https://github.com/jenkinsci/openid-plugin/compare/c86cbb4dd57d...81da0784bdc7 -- You received this message because you are subscribed to the Google Groups "Jenkins Commits" group. To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-commits+unsubscr...@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/jenkinsci-commits/jenkinsci/openid-plugin/push/refs/heads/master/c86cbb-81da07%40github.com.