This page https://wiki.jenkins-ci.org/display/JENKINS/Security+Advisories mentions:
"If you find a vulnerability in Jenkins, please report it in the issue tracker under the "SECURITY" project<http://issues.jenkins-ci.org/browse/SECURITY>. This project is configured in such a way that only the reporter and the core Jenkins developers can see the details." The issue tracker is currently down and doesn't allow registration. Was is the current prefered communication channel? Thanks -- You received this message because you are subscribed to the Google Groups "Jenkins Developers" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. For more options, visit https://groups.google.com/d/optout.
