Branch: refs/heads/master Home: https://github.com/jenkinsci/pre-scm-buildstep-plugin Commit: 961c1ead73fec0fe6738fe104b7134e663f39a1a https://github.com/jenkinsci/pre-scm-buildstep-plugin/commit/961c1ead73fec0fe6738fe104b7134e663f39a1a Author: Mark Waite <mark.earl.wa...@gmail.com> Date: 2024-04-19 (Fri, 19 Apr 2024)
Changed paths: M pom.xml Log Message: ----------- Require Jenkins 2.426.3 or newer (#61) As of 19 Apr 2024, 61% of the installations of the most recent release (71.v1f2990a_37e27 - released a year ago) are using Jenkins 2.426.3 or newer. Jenkins 2.426.3 is the first version with the fix for https://www.jenkins.io/security/advisory/2024-01-24/#SECURITY-3314, the arbitrary file read vulnerability through the CLI can lead to RCE. It is a very good choice as a minimum Jenkins version. Jenkins 2.426.3 is one of the versions suggested by https://www.jenkins.io/doc/developer/plugin-development/choosing-jenkins-baseline/ Also removes a workaround for spotbugs version that is no longer required. To unsubscribe from these emails, change your notification settings at https://github.com/jenkinsci/pre-scm-buildstep-plugin/settings/notifications -- You received this message because you are subscribed to the Google Groups "Jenkins Commits" group. To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-commits+unsubscr...@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/jenkinsci-commits/jenkinsci/pre-scm-buildstep-plugin/push/refs/heads/master/9a7ba5-961c1e%40github.com.