Merge "Document OJSI-42 (CVE-201912123) vulnerability"
authorDan Timoney <dtimoney@att.com>
Fri, 7 Jun 2019 02:11:30 +0000 (02:11 +0000)
committerGerrit Code Review <gerrit@onap.org>
Fri, 7 Jun 2019 02:11:30 +0000 (02:11 +0000)
Former-commit-id: 67dec3df13ada39362c8b45043ee9b4f18846cc3

docs/release-notes.rst

index 40192ad..bdafa1c 100644 (file)
@@ -42,6 +42,8 @@ The full list of known issues in SDNC may be found in the ONAP Jira at <https://
 
 - CVE-2019-12132 `OJSI-41 <https://jira.onap.org/browse/OJSI-41>`_ SDNC service allows for arbitrary code execution in sla/dgUpload form
   Fixed temporarily by disabling admportal
+- CVE-2019-12123 `OJSI-42 <https://jira.onap.org/browse/OJSI-42>`_ SDNC service allows for arbitrary code execution in sla/printAsXml form
+  Fixed temporarily by disabling admportal
 
 *Known Security Issues*