Releases: jenkinsci/echarts-api-plugin
Releases Β· jenkinsci/echarts-api-plugin
v4.9.0-1 π
π¦ Dependency updates
- Bump echarts from 4.8.0 to 4.9.0 (#83) @dependabot
- Bump kentaro-m/auto-assign-action from v1.1.1 to v1.1.2 (#84) @dependabot
- Bump plugin-util-api from 1.2.2 to 1.2.5 (#80) @dependabot
- Bump analysis-pom from 4.1.0 to 4.2.1 (#82) @dependabot
- Bump kentaro-m/auto-assign-action from v1.0.1 to v1.1.1 (#75) @dependabot
- Update actions/checkout requirement to v2.3.2 (#76) @dependabot
- Bump release-drafter/release-drafter from v5.6.1 to v5.11.0 (#77) @dependabot
- Bump analysis-pom from 4.0.0 to 4.1.0 (#73) @dependabot
- Update Dependabot config file (#72) @dependabot-preview
- Update buildPlugin to align with what is in the global library (#70) @slide
ECharts Jenkins API 4.8.0-2 π
π Bug Fixes
π¦ Dependency updates
- Bump jackson2-api from 2.11.0 to 2.11.1 (#68) @dependabot-preview
ECharts Jenkins API 4.8.0-1 π
β¨ Improvements
- JENKINS-62418 - Show a progress while the trend chars on the Job page are loading (#67) @uhafner
π Bug Fixes
π¦ Dependency updates
- Bump echarts from 4.7.0 to 4.8.0 (#66) @dependabot-preview
π§ Internal changes
π Documentation updates
- Update README.adoc (#63) @nimishbongale
ECharts Jenkins API 4.7.0-4 π
π₯ Security Fixes
-
Fix Stored XSS vulnerability (SECURITY-1841 / CVE-2020-2193):
ECharts API Plugin 4.7.0-3 and earlier does not escape the parser identifier when rendering charts.
This results in a stored cross-site scripting (XSS) vulnerability that can be exploited by users with Job/Configure permission. -
Fix Stored XSS vulnerability (SECURITY-1842 / CVE-2020-2194):
ECharts API Plugin 4.7.0-3 and earlier does not escape the display name of the builds in the trend chart.
This results in a stored cross-site scripting (XSS) vulnerability that can be exploited by users with Run/Update permission.
ECharts Jenkins API 4.7.1-2 π
π¦ Dependency updates
- Bump plugin-util-api from 1.2.0 to 1.2.1 (#60) @dependabot-preview
- Bump jquery3-api from 3.4.1-10 to 3.5.1-1 (#59) @dependabot-preview
π§ Internal changes
ECharts Jenkins API 4.7.0-1 π
π¦ Dependency updates
- Bump echarts-build-trends from 1.1.2 to 2.0.0 (#58) @dependabot-preview
- Bump echarts from 4.6.0 to 4.7.0 (#57) @dependabot-preview
ECharts Jenkins API 4.6.0-10 π
π¦ Dependency updates
- Bump echarts-build-trends from 1.1.1 to 1.1.2 (#56) @dependabot-preview
- Bump echarts-build-trends from 1.1.0 to 1.1.1 (#55) @dependabot-preview
ECharts Jenkins API 4.6.0-9 π
β¨ Improvements
π Bug Fixes
π¦ Dependency updates
- Bump plugin-util-api from 1.0.1 to 1.2.0 (#54) @dependabot-preview
- Bump analysis-pom from 2.2.2 to 4.0.0 (#51) @dependabot-preview
ECharts Jenkins API 4.6.0-7 π
π Initial release π