-
Notifications
You must be signed in to change notification settings - Fork 56
JENKINS-48940 INT-418 Add whitelist for serialized classes. #17
JENKINS-48940 INT-418 Add whitelist for serialized classes. #17
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM assuming that the deserialization of classes is safe. CC @jglick
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Sounds good.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
+1
@whyjustin do you plan to release it soon? Thanks! |
@oleg-nenashev I can release later today. IIUC the major version bump in the parent pom is only due to removing support for Jenkins 1.x? Trying to determine if that affects our versioning. |
@whyjustin There is a version bump in the Parent POM file. It has been done due to some major changes inside like changing the default Java/Jenkins version. But your POM explicitly sets Jenkins version to 2.7 (see the |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
+1
https://issues.jenkins-ci.org/browse/JENKINS-48940
[INTERNAL] https://issues.sonatype.org/browse/INT-418