Security spring cleaning
Today we published a security advisory that mostly informs about issues in Jenkins plugins that have no fixes.
What’s going on?
The Jenkins security team triages incoming reports both to Jira and our non-public mailing list.
Once we’ve determined it is a plugin not maintained by any Jenkins security team members, we try to inform the plugin maintainer about the issue, offering our...