From 33d10dd35de6a80bf833a0c5470ee60dcdb19953 Mon Sep 17 00:00:00 2001 From: Krzysztof Opasiak Date: Sat, 5 Oct 2019 23:52:06 +0200 Subject: [PATCH] Document fixed OJSI tickets Issue-ID: OJSI-65 Issue-ID: OJSI-92 Signed-off-by: Krzysztof Opasiak Change-Id: I5c16b0601ec6a27edd98cc07440f29ac7bed80bd (cherry picked from commit e16f6f96b3207fdc3752f2e1f2234ee8b77f3bed) --- docs/release-notes.rst | 3 +++ 1 file changed, 3 insertions(+) diff --git a/docs/release-notes.rst b/docs/release-notes.rst index 7236d848..79b2b186 100644 --- a/docs/release-notes.rst +++ b/docs/release-notes.rst @@ -34,6 +34,9 @@ Maintanance release with bug fixes and security enhancements. *Fixed Security Issues* + * CVE-2019-12122 - ONAP Portal allows to retrieve password of currently active user [`OJSI-65 `_] + * CVE-2019-12121 - ONAP Portal is vulnerable for Padding Oracle attack [`OJSI-92 `_] + *Known Security Issues* *Known Vulnerabilities in Used Modules* -- 2.16.6