Document OJSI-134 vulnerability 38/89438/1
authorKrzysztof Opasiak <k.opasiak@samsung.com>
Wed, 5 Jun 2019 21:44:18 +0000 (23:44 +0200)
committerKrzysztof Opasiak <k.opasiak@samsung.com>
Wed, 5 Jun 2019 21:44:18 +0000 (23:44 +0200)
Issue-ID: OJSI-134
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: Ic48733b90bc80836fadb78c085b378180c5cb1c3

docs/release-notes.rst

index 0261b2a..339925a 100644 (file)
@@ -53,6 +53,8 @@ Summary
 
 *Known Security Issues*
 
+* In default deployment OOM (consul-server-ui) exposes HTTP port 30270 outside of cluster. [`OJSI-134 <https://jira.onap.org/browse/OJSI-134>`_]
+
 *Known Vulnerabilities in Used Modules*
 
 OOM code has been formally scanned during build time using NexusIQ and no