Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-28790

Sonar database credentials in build console output not masked since LTS version 1.596.3

    Details

    • Type: Bug
    • Status: Resolved (View Workflow)
    • Priority: Critical
    • Resolution: Fixed
    • Component/s: core
    • Environment:
      Jenkins LTS 1.596.3 / 1.609.1 / 1.609.2 / 1.609.3
      SonarQube plugin version 2.2.1
      Windows 2012 R2
      Java 8
      Browser FireFox
    • Similar Issues:

      Description

      When using Jenkins LTS version 1.596.3 / 1.609.1 / 1.609.2 / 1.609.3 we've noticed that the passwords from Sonar builds in the buildlog weren't masked anymore but showed as plain text.
      After we downgraded Jenkins to version 1.596.2 the passwords were masked again.
      I've tested several versions of the SonarQube plugin but that didn't had any effect, therefor it seems to be a Jenkins related issue.

        Attachments

          Issue Links

            Activity

            janjaap Jan-Jaap Spijkerman created issue -
            janjaap Jan-Jaap Spijkerman made changes -
            Field Original Value New Value
            Description When using version 1.596.3 and 1.609.1 of Jenkins we noticed that the passwords by Sonar builds weren't masked anymore but showed as plain text.
            After we downgraded Jenkins to version 1.596.2 again the passwords were masked again.
            I've tested several version of the SonarQube plugin but that didn't had any effect, therefor it seems to be a Jenkins related issue.
            When using version 1.596.3 or 1.609.1 of Jenkins we noticed that the passwords by Sonar builds in the buildlog weren't masked anymore but showed as plain text.
            After we downgraded Jenkins to version 1.596.2 the passwords were masked again.
            I've tested several versions of the SonarQube plugin but that didn't had any effect, therefor it seems to be a Jenkins related issue.
            janjaap Jan-Jaap Spijkerman made changes -
            Labels jenkins sonar sonar-plugin
            janjaap Jan-Jaap Spijkerman made changes -
            Environment Jenkins 1.596.3 and 1.609.1
            SonarQube plugin version 2.2.1
            Windows 2012 R2
            Java 8
            Browser FireFox
            Jenkins LTS 1.596.3 / 1.609.1 / 1.609.2 / 1.609.3
            SonarQube plugin version 2.2.1
            Windows 2012 R2
            Java 8
            Browser FireFox
            janjaap Jan-Jaap Spijkerman made changes -
            Description When using version 1.596.3 or 1.609.1 of Jenkins we noticed that the passwords by Sonar builds in the buildlog weren't masked anymore but showed as plain text.
            After we downgraded Jenkins to version 1.596.2 the passwords were masked again.
            I've tested several versions of the SonarQube plugin but that didn't had any effect, therefor it seems to be a Jenkins related issue.
            When using Jenkins LTS version 1.596.3 / 1.609.1 / 1.609.2 / 1.609.3 we've noticed that the passwords from Sonar builds in the buildlog weren't masked anymore but showed as plain text.
            After we downgraded Jenkins to version 1.596.2 the passwords were masked again.
            I've tested several versions of the SonarQube plugin but that didn't had any effect, therefor it seems to be a Jenkins related issue.
            janjaap Jan-Jaap Spijkerman made changes -
            Summary Passwords in build console output not masked since LTS version 1.596.3 Sonar database credentials in build console output not masked since LTS version 1.596.3
            danielbeck Daniel Beck made changes -
            Link This issue is related to JENKINS-26684 [ JENKINS-26684 ]
            janjaap Jan-Jaap Spijkerman made changes -
            Component/s core [ 15593 ]
            Component/s sonar [ 15523 ]
            escoem Emilio Escobar made changes -
            Assignee Sonar Team [ sonarteam ] Emilio Escobar [ escoem ]
            escoem Emilio Escobar made changes -
            Status Open [ 1 ] In Progress [ 3 ]
            escoem Emilio Escobar made changes -
            Remote Link This issue links to "PR (Web Link)" [ 13800 ]
            scm_issue_link SCM/JIRA link daemon made changes -
            Status In Progress [ 3 ] Resolved [ 5 ]
            Resolution Fixed [ 1 ]
            aheritier Arnaud Héritier made changes -
            Labels jenkins sonar sonar-plugin jenkins lts-candidate sonar sonar-plugin
            olivergondza Oliver Gondža made changes -
            Labels jenkins lts-candidate sonar sonar-plugin 1.651 jenkins sonar sonar-plugin
            olivergondza Oliver Gondža made changes -
            Labels 1.651 jenkins sonar sonar-plugin jenkins sonar sonar-plugin
            olivergondza Oliver Gondža made changes -
            Labels jenkins sonar sonar-plugin 1.651.1-fixed jenkins sonar sonar-plugin
            benapgar Ben Apgar made changes -
            Link This issue is related to JENKINS-33727 [ JENKINS-33727 ]
            rtyler R. Tyler Croy made changes -
            Workflow JNJira [ 163648 ] JNJira + In-Review [ 197266 ]

              People

              • Assignee:
                escoem Emilio Escobar
                Reporter:
                janjaap Jan-Jaap Spijkerman
              • Votes:
                7 Vote for this issue
                Watchers:
                10 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: