[jenkinsci/mercurial-plugin] dfb723: [SECURITY-2831]

4 views
Skip to first unread message

Bruno Verachten

unread,
Dec 13, 2022, 4:28:44 AM12/13/22
to jenkinsc...@googlegroups.com
Branch: refs/heads/org.ini4j-allows-attackers-to-cause-a-Denial-of-Service-(DoS)
Home: https://github.com/jenkinsci/mercurial-plugin
Commit: dfb723cdcc815875cdf63abd32e314ced5e95ac9
https://github.com/jenkinsci/mercurial-plugin/commit/dfb723cdcc815875cdf63abd32e314ced5e95ac9
Author: rsandell <rsan...@cloudbees.com>
Date: 2022-10-12 (Wed, 12 Oct 2022)

Changed paths:
M src/main/java/hudson/plugins/mercurial/MercurialStatus.java
A src/test/java/hudson/plugins/mercurial/MercurialStatusPermissionTest.java

Log Message:
-----------
[SECURITY-2831]


Commit: de291bf8e7f1c622d951f9b97faad0c934d622a5
https://github.com/jenkinsci/mercurial-plugin/commit/de291bf8e7f1c622d951f9b97faad0c934d622a5
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Date: 2022-10-30 (Sun, 30 Oct 2022)

Changed paths:
M pom.xml

Log Message:
-----------
Bump plugin from 4.48 to 4.49

Bumps [plugin](https://github.com/jenkinsci/plugin-pom) from 4.48 to 4.49.
- [Release notes](https://github.com/jenkinsci/plugin-pom/releases)
- [Changelog](https://github.com/jenkinsci/plugin-pom/blob/master/CHANGELOG.md)
- [Commits](https://github.com/jenkinsci/plugin-pom/compare/plugin-4.48...plugin-4.49)

---
updated-dependencies:
- dependency-name: org.jenkins-ci.plugins:plugin
dependency-type: direct:production
update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <sup...@github.com>


Commit: ba145f18fc08de389ae23bc7fe78508f4d73e361
https://github.com/jenkinsci/mercurial-plugin/commit/ba145f18fc08de389ae23bc7fe78508f4d73e361
Author: Bruno Verachten <goun...@gmail.com>
Date: 2022-10-30 (Sun, 30 Oct 2022)

Changed paths:
M pom.xml

Log Message:
-----------
Merge pull request #239 from jenkinsci/dependabot/maven/org.jenkins-ci.plugins-plugin-4.49

chore(jenkins) Bump plugin from 4.48 to 4.49


Commit: 6f7531d3732a355974090ad016d147188566f3ba
https://github.com/jenkinsci/mercurial-plugin/commit/6f7531d3732a355974090ad016d147188566f3ba
Author: Basil Crow <m...@basilcrow.com>
Date: 2022-11-09 (Wed, 09 Nov 2022)

Changed paths:
M pom.xml

Log Message:
-----------
Use HTTPS SCM URL


Commit: d723fdb3a4ba96e75a0b0bf32a5ca95292e40ca1
https://github.com/jenkinsci/mercurial-plugin/commit/d723fdb3a4ba96e75a0b0bf32a5ca95292e40ca1
Author: Mark Waite <mark.ea...@gmail.com>
Date: 2022-11-09 (Wed, 09 Nov 2022)

Changed paths:
M pom.xml

Log Message:
-----------
Merge pull request #240 from basil/scm

Use HTTPS SCM URL


Commit: e0cac4debac35101ecf1cf4f54fd4dd1af61abd4
https://github.com/jenkinsci/mercurial-plugin/commit/e0cac4debac35101ecf1cf4f54fd4dd1af61abd4
Author: Mark Waite <mark.ea...@gmail.com>
Date: 2022-11-11 (Fri, 11 Nov 2022)

Changed paths:
M pom.xml

Log Message:
-----------
Require Jenkins 2.332.4 or newer


Commit: 94c0dcfa689d37ad18d126505cd31f64d7b2a6a6
https://github.com/jenkinsci/mercurial-plugin/commit/94c0dcfa689d37ad18d126505cd31f64d7b2a6a6
Author: Mark Waite <mark.ea...@gmail.com>
Date: 2022-11-14 (Mon, 14 Nov 2022)

Changed paths:
M pom.xml

Log Message:
-----------
Merge pull request #241 from MarkEWaite/require-newer-core

Require Jenkins 2.332.4 or newer


Commit: cf4d7fe8625f1feeab15ce9b7e378fc3f85c362b
https://github.com/jenkinsci/mercurial-plugin/commit/cf4d7fe8625f1feeab15ce9b7e378fc3f85c362b
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Date: 2022-12-01 (Thu, 01 Dec 2022)

Changed paths:
M pom.xml

Log Message:
-----------
Bump bom-2.332.x from 1678.vc1feb_6a_3c0f1 to 1723.vcb_9fee52c9fc

Bumps [bom-2.332.x](https://github.com/jenkinsci/bom) from 1678.vc1feb_6a_3c0f1 to 1723.vcb_9fee52c9fc.
- [Release notes](https://github.com/jenkinsci/bom/releases)
- [Commits](https://github.com/jenkinsci/bom/commits)

---
updated-dependencies:
- dependency-name: io.jenkins.tools.bom:bom-2.332.x
dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <sup...@github.com>


Commit: f003b560b17c78fd7829a0ef2aeba0c6e3315a61
https://github.com/jenkinsci/mercurial-plugin/commit/f003b560b17c78fd7829a0ef2aeba0c6e3315a61
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Date: 2022-12-01 (Thu, 01 Dec 2022)

Changed paths:
M pom.xml

Log Message:
-----------
Merge pull request #243 from jenkinsci/dependabot/maven/io.jenkins.tools.bom-bom-2.332.x-1723.vcb_9fee52c9fc


Commit: 0c17292673ccd6d9823d01c5f0213a241c6a5815
https://github.com/jenkinsci/mercurial-plugin/commit/0c17292673ccd6d9823d01c5f0213a241c6a5815
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Date: 2022-12-01 (Thu, 01 Dec 2022)

Changed paths:
M pom.xml

Log Message:
-----------
Bump plugin from 4.49 to 4.51

Bumps [plugin](https://github.com/jenkinsci/plugin-pom) from 4.49 to 4.51.
- [Release notes](https://github.com/jenkinsci/plugin-pom/releases)
- [Changelog](https://github.com/jenkinsci/plugin-pom/blob/master/CHANGELOG.md)
- [Commits](https://github.com/jenkinsci/plugin-pom/compare/plugin-4.49...plugin-4.51)

---
updated-dependencies:
- dependency-name: org.jenkins-ci.plugins:plugin
dependency-type: direct:production
update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <sup...@github.com>


Commit: a3ba5f62f1e2bf6c99f80d4a2ef60338bfad34be
https://github.com/jenkinsci/mercurial-plugin/commit/a3ba5f62f1e2bf6c99f80d4a2ef60338bfad34be
Author: Bruno Verachten <goun...@gmail.com>
Date: 2022-12-01 (Thu, 01 Dec 2022)

Changed paths:
M pom.xml

Log Message:
-----------
chore(dependencies) Merge pull request #244 from jenkinsci/dependabot/maven/org.jenkins-ci.plugins-plugin-4.51

Bump plugin from 4.49 to 4.51


Commit: 3a9be8a43a0da83d7e81a1705533e041ef9a7107
https://github.com/jenkinsci/mercurial-plugin/commit/3a9be8a43a0da83d7e81a1705533e041ef9a7107
Author: Bruno Verachten <goun...@gmail.com>
Date: 2022-12-13 (Tue, 13 Dec 2022)

Changed paths:
M pom.xml
M src/main/java/hudson/plugins/mercurial/MercurialStatus.java
A src/test/java/hudson/plugins/mercurial/MercurialStatusPermissionTest.java

Log Message:
-----------
Merge branch 'master' into org.ini4j-allows-attackers-to-cause-a-Denial-of-Service-(DoS)


Compare: https://github.com/jenkinsci/mercurial-plugin/compare/bf1c4e61e26b...3a9be8a43a0d
Reply all
Reply to author
Forward
0 new messages