Closed steelhead31 closed 9 months ago
Remove disabled signature checks for download of Jenkins slave.jar from HTTPs served jenkins server.
Fixes https://github.com/adoptium/infrastructure/issues/3342
Identified in Trail Of Bits Security Audit: TOB-9
/thaw
Sorry @steelhead31, the code freeze is still in place.
Remove disabled signature checks for download of Jenkins slave.jar from HTTPs served jenkins server.
Fixes https://github.com/adoptium/infrastructure/issues/3342
Identified in Trail Of Bits Security Audit: TOB-9