Jenkins cookies vulnerabilities

29 views
Skip to first unread message

lea.i.abrugena

unread,
Jul 11, 2017, 4:01:53 AM7/11/17
to jenkins...@googlegroups.com
Hi Everyone,

Our Jenkins has cookies security vulnerabilities, please see below. Does
anyone of you experience the same thing? Any idea how to fix it?

The set cookie for these 3 are not secured:
-ACEGI_SECURITY_HASHED_REMEMBER_ME_COOKIE
-iconSize
-hudson_auto_refresh


Set-Cookie:hudson_auto_refresh=false;Path=/;Expires=Thu, 10-Aug-2017
04:05:22 GMT;Max-Age=2592000



--
View this message in context: http://jenkins-ci.361315.n4.nabble.com/Jenkins-cookies-vulnerabilities-tp4900241.html
Sent from the Jenkins users mailing list archive at Nabble.com.
Reply all
Reply to author
Forward
0 new messages