From fe49900d92f35a03acac54d63504d2188e754962 Mon Sep 17 00:00:00 2001 From: Krzysztof Opasiak Date: Wed, 5 Jun 2019 02:13:33 +0200 Subject: Document OJSI-126 vulnerability Issue-ID: OJSI-126 Signed-off-by: Krzysztof Opasiak Change-Id: I8cab133e7a39342c7d72cec6bc522aa6f5cca797 --- docs/release-notes.rst | 1 + 1 file changed, 1 insertion(+) (limited to 'docs/release-notes.rst') diff --git a/docs/release-notes.rst b/docs/release-notes.rst index 3af8f5a6ed..3ce998f2c4 100644 --- a/docs/release-notes.rst +++ b/docs/release-notes.rst @@ -111,6 +111,7 @@ Security Notes - [`OJSI-94 `__\ ] - sdc-wfd-fe allows to impersonate any user by setting USER_ID - [`OJSI-101 `__\ ] - In default deployment SDC (sdc-be) exposes HTTP port 30205 outside of cluster. - [`OJSI-102 `__\ ] - In default deployment SDC (sdc-fe) exposes HTTP port 30206 outside of cluster. +- [`OJSI-126 `__\ ] - In default deployment SDC (sdc-wfd-fe) exposes HTTP port 30256 outside of cluster. *Known Vulnerabilities in Used Modules* -- cgit 1.2.3-korg