Branch: refs/heads/master Home: https://github.com/jenkinsci/mstest-plugin Commit: f9b9b0cbdf7559fdd8fc4004e5a242f5801daa67 https://github.com/jenkinsci/mstest-plugin/commit/f9b9b0cbdf7559fdd8fc4004e5a242f5801daa67 Author: Ivan Pavlovic <pavlovic.ivan...@gmail.com> Date: 2023-06-16 (Fri, 16 Jun 2023)
Changed paths: M src/main/java/hudson/plugins/mstest/MSTestReportConverter.java M src/main/java/hudson/plugins/mstest/XslTransformer.java M src/test/java/hudson/plugins/mstest/MSTestReportConverterTest.java Log Message: ----------- Fix CVE-2023-24441 preventing XXE attacks (#20) Configure DocumentBuilderFactory and XSLTransformer so that XML parser disables the use of DTDs -- You received this message because you are subscribed to the Google Groups "Jenkins Commits" group. To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-commits+unsubscr...@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/jenkinsci-commits/jenkinsci/mstest-plugin/push/refs/heads/master/3870f5-f9b9b0%40github.com.