{"payload":{"feedbackUrl":"https://github.com/orgs/community/discussions/53140","repo":{"id":1163711,"defaultBranch":"master","name":"repository-connector-plugin","ownerLogin":"jenkinsci","currentUserCanPush":false,"isFork":false,"isEmpty":false,"createdAt":"2010-12-13T05:49:56.000Z","ownerAvatar":"https://avatars.githubusercontent.com/u/107424?v=4","public":true,"private":false,"isOrgOwned":true},"refInfo":{"name":"","listCacheKey":"v0:1719432316.0","currentOid":""},"activityList":{"items":[{"before":null,"after":"ff44f47261b3918f55e21b4bad8d0fab00b50347","ref":"refs/heads/dependabot/maven/org.jenkins-ci.plugins-structs-338.v848422169819","pushedAt":"2024-06-26T20:05:16.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"Bump org.jenkins-ci.plugins:structs from 1.20 to 338.v848422169819\n\nBumps [org.jenkins-ci.plugins:structs](https://github.com/jenkinsci/structs-plugin) from 1.20 to 338.v848422169819.\n- [Release notes](https://github.com/jenkinsci/structs-plugin/releases)\n- [Changelog](https://github.com/jenkinsci/structs-plugin/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/jenkinsci/structs-plugin/commits)\n\n---\nupdated-dependencies:\n- dependency-name: org.jenkins-ci.plugins:structs\n dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"Bump org.jenkins-ci.plugins:structs from 1.20 to 338.v848422169819"}},{"before":"5d0aeb76ab727d6d2e3b4c4fc043c8792b7efbfc","after":"04430cb5f79e8e48ec39cfee1a31d0ea57b5a1f8","ref":"refs/heads/dependabot/maven/org.jenkins-ci.plugins-credentials-2.6.1.1","pushedAt":"2023-03-15T15:08:28.935Z","pushType":"force_push","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"Bump credentials from 2.3.13 to 2.6.1.1\n\nBumps [credentials](https://github.com/jenkinsci/credentials-plugin) from 2.3.13 to 2.6.1.1.\n- [Release notes](https://github.com/jenkinsci/credentials-plugin/releases)\n- [Changelog](https://github.com/jenkinsci/credentials-plugin/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/jenkinsci/credentials-plugin/compare/credentials-2.3.13...credentials-2.6.1.1)\n\n---\nupdated-dependencies:\n- dependency-name: org.jenkins-ci.plugins:credentials\n dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"Bump credentials from 2.3.13 to 2.6.1.1"}},{"before":"05e9d536fb4299189701813e8bac0d0fc4d11430","after":"b33237e4695c0cbcf1ba8b2b04df3382cad3d514","ref":"refs/heads/master","pushedAt":"2023-03-15T15:07:32.569Z","pushType":"push","commitsCount":1,"pusher":{"login":"jgangemi","name":"Jae Gangemi","path":"/jgangemi","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/1831839?s=80&v=4"},"commit":{"message":"[maven-release-plugin] prepare for next development iteration","shortMessageHtmlLink":"[maven-release-plugin] prepare for next development iteration"}},{"before":"2dd9fb6bfc10b011d327f3b5254f3bda2f7be7d0","after":"05e9d536fb4299189701813e8bac0d0fc4d11430","ref":"refs/heads/master","pushedAt":"2023-03-15T15:07:29.407Z","pushType":"push","commitsCount":1,"pusher":{"login":"jgangemi","name":"Jae Gangemi","path":"/jgangemi","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/1831839?s=80&v=4"},"commit":{"message":"[maven-release-plugin] prepare release repository-connector-2.2.1","shortMessageHtmlLink":"[maven-release-plugin] prepare release repository-connector-2.2.1"}},{"before":"34fef47de4aa453d0ff0b14210ae167116e9533a","after":"2dd9fb6bfc10b011d327f3b5254f3bda2f7be7d0","ref":"refs/heads/master","pushedAt":"2023-03-15T15:03:56.782Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"jgangemi","name":"Jae Gangemi","path":"/jgangemi","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/1831839?s=80&v=4"},"commit":{"message":"vuln-fix: Temporary File Information Disclosure (#60)\n\nThis fixes temporary file information disclosure vulnerability due to the use\r\nof the vulnerable `File.createTempFile()` method. The vulnerability is fixed by\r\nusing the `Files.createTempFile()` method which sets the correct posix permissions.\r\n\r\nWeakness: CWE-377: Insecure Temporary File\r\nSeverity: Medium\r\nCVSSS: 5.5\r\nDetection: CodeQL & OpenRewrite (https://public.moderne.io/recipes/org.openrewrite.java.security.SecureTempFileCreation)\r\n\r\nReported-by: Jonathan Leitschuh \r\n\r\nBug-tracker: https://github.com/JLLeitschuh/security-research/issues/18\r\n\r\nCo-authored-by: Moderne ","shortMessageHtmlLink":"vuln-fix: Temporary File Information Disclosure (#60)"}}],"hasNextPage":false,"hasPreviousPage":false,"activityType":"all","actor":null,"timePeriod":"all","sort":"DESC","perPage":30,"cursor":"djE6ks8AAAAEcCCe0wA","startCursor":null,"endCursor":null}},"title":"Activity ยท jenkinsci/repository-connector-plugin"}