X-Git-Url: https://gerrit.onap.org/r/gitweb?a=blobdiff_plain;f=docs%2Frelease-notes.rst;fp=docs%2Frelease-notes.rst;h=79b2b186029c0240dfa91e77811dbfd989acdc85;hb=33d10dd35de6a80bf833a0c5470ee60dcdb19953;hp=7236d84868440fa8ea196d40cbe1f54f3f0eafce;hpb=8d4ac88d87e4776999f13ef151658f1bb48c2bbf;p=portal.git diff --git a/docs/release-notes.rst b/docs/release-notes.rst index 7236d848..79b2b186 100644 --- a/docs/release-notes.rst +++ b/docs/release-notes.rst @@ -34,6 +34,9 @@ Maintanance release with bug fixes and security enhancements. *Fixed Security Issues* + * CVE-2019-12122 - ONAP Portal allows to retrieve password of currently active user [`OJSI-65 `_] + * CVE-2019-12121 - ONAP Portal is vulnerable for Padding Oracle attack [`OJSI-92 `_] + *Known Security Issues* *Known Vulnerabilities in Used Modules*