From e16f6f96b3207fdc3752f2e1f2234ee8b77f3bed Mon Sep 17 00:00:00 2001 From: Krzysztof Opasiak Date: Sat, 5 Oct 2019 23:52:06 +0200 Subject: Document fixed OJSI tickets Issue-ID: OJSI-65 Issue-ID: OJSI-92 Signed-off-by: Krzysztof Opasiak Change-Id: I5c16b0601ec6a27edd98cc07440f29ac7bed80bd --- docs/release-notes.rst | 3 +++ 1 file changed, 3 insertions(+) (limited to 'docs') diff --git a/docs/release-notes.rst b/docs/release-notes.rst index 8d587560..9f262149 100644 --- a/docs/release-notes.rst +++ b/docs/release-notes.rst @@ -28,6 +28,9 @@ Maintanance release with bug fixes and security enhancements. *Fixed Security Issues* + * CVE-2019-12122 - ONAP Portal allows to retrieve password of currently active user [`OJSI-65 `_] + * CVE-2019-12121 - ONAP Portal is vulnerable for Padding Oracle attack [`OJSI-92 `_] + *Known Security Issues* *Known Vulnerabilities in Used Modules* -- cgit 1.2.3-korg