[JIRA] [mask-passwords] (JENKINS-14687) Password is exposed through browser option view page source

2014-07-01 Thread jgl...@cloudbees.com (JIRA)














































Jesse Glick
 commented on  JENKINS-14687


Password is exposed through browser option view page source















True, that should be using passwordAsSecret rather than password. A properly written test against Jenkins 1.551+ ought to fail given this kind of mistake: https://github.com/jenkinsci/jenkins/commit/bf53919



























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [mask-passwords] (JENKINS-14687) Password is exposed through browser option view page source

2014-06-30 Thread jgl...@cloudbees.com (JIRA)














































Jesse Glick
 commented on  JENKINS-14687


Password is exposed through browser option view page source















@danielbeck what do you mean by that? Are you referring to VarPasswordPair? The Jelly looks correct to me.



























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [mask-passwords] (JENKINS-14687) Password is exposed through browser option view page source

2014-06-30 Thread dan...@beckweb.net (JIRA)














































Daniel Beck
 commented on  JENKINS-14687


Password is exposed through browser option view page source















Jesse Glick I meant global as in global.jelly:

https://github.com/jenkinsci/mask-passwords-plugin/blob/master/src/main/resources/com/michelin/cio/hudson/plugins/maskpasswords/MaskPasswordsBuildWrapper/global.jelly#L48

The fix is incomplete.



























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [mask-passwords] (JENKINS-14687) Password is exposed through browser option view page source

2014-05-26 Thread dan...@beckweb.net (JIRA)














































Daniel Beck
 reopened  JENKINS-14687


Password is exposed through browser option view page source
















Fix does not apply to global Jenkins config password form.





Change By:


Daniel Beck
(26/May/14 3:55 PM)




Resolution:


Fixed





Status:


Resolved
Reopened



























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [mask-passwords] (JENKINS-14687) Password is exposed through browser option view page source

2013-12-13 Thread scm_issue_l...@java.net (JIRA)















































SCM/JIRA link daemon
 resolved  JENKINS-14687 as Fixed


Password is exposed through browser option view page source
















Change By:


SCM/JIRA link daemon
(13/Dec/13 10:52 AM)




Status:


Open
Resolved





Resolution:


Fixed



























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/groups/opt_out.


[JIRA] [mask-passwords] (JENKINS-14687) Password is exposed through browser option view page source

2013-12-13 Thread scm_issue_l...@java.net (JIRA)














































SCM/JIRA link daemon
 commented on  JENKINS-14687


Password is exposed through browser option view page source















Code changed in jenkins
User: Nicolas De Loof
Path:
 src/main/resources/com/michelin/cio/hudson/plugins/maskpasswords/MaskPasswordsBuildWrapper/config.jelly
http://jenkins-ci.org/commit/mask-passwords-plugin/9ba2d2b643610ba4e729164a59d94402d9a763eb
Log:
  FIXED JENKINS-14687 encrypt password in HTML





























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/groups/opt_out.