Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Require Jenkins 2.426.3 or newer #132

Merged

Conversation

MarkEWaite
Copy link
Contributor

Require Jenkins 2.426.3 or newer

Plugin installation statistics show that 41% of installs of 1.9.1 (released 2 years ago) are already running Jenkins 2.426.3 or newer.

SECURITY-3314 affects Jenkins 2.426.2 and earlier and strongly advises users to upgrade to 2.426.3.

Choosing a Jenkins baseline recommends either 2.414.3 or 2.426.3 as the Jenkins minimum version. Reducing the minimum version to 2.414.3 increases the installation percentage from 41% to 50%, but does not help to persuade users that they should upgrade to at least 2.426.3.

Also includes

Testing done

Automated tests passing. Will combine with other pull requests and perform interactive testing:

Submitter checklist

Preview Give feedback

MarkEWaite added 2 commits May 4, 2024 07:44
Silences a warning from the hpi plugin
https://stats.jenkins.io/pluginversions/badge.html shows that 41% of
installs of 1.9.1 (released 2 years ago) are already running Jenkins
2.426.3 or newer.

https://www.jenkins.io/security/advisory/2024-01-24/#SECURITY-3314
affects Jenkins 2.426.2 and earlier and strongly advises users to upgrade
to 2.426.3.

https://www.jenkins.io/doc/developer/plugin-development/choosing-jenkins-baseline/
recommends either 2.414.3 or 2.426.3 as the Jenkins minimum version.
Reducing the minimum version to 2.414.3 increases the installation
percentage from 41% to 50%, but does not help to persuade users that
they should upgrade to at least 2.426.3.
@MarkEWaite MarkEWaite requested a review from a team as a code owner May 4, 2024 13:55
@MarkEWaite MarkEWaite added the chore Reduce maintenance label May 4, 2024
MarkEWaite added a commit to MarkEWaite/docker-lfs that referenced this pull request May 4, 2024
Copy link
Contributor

@bakito bakito left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

lgtm

@MarkEWaite MarkEWaite merged commit 15db4df into jenkinsci:master May 4, 2024
14 checks passed
@MarkEWaite MarkEWaite deleted the update-minimum-jenkins-version branch May 4, 2024 15:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
chore Reduce maintenance
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants