MantisBT: master 12a9dcbb
Author | Committer | Branch | Timestamp | Parent |
---|---|---|---|---|
dregad | dregad | master | 2020-12-06 13:08 | master cff10f26 |
Affected Issues | 0027357: Attacker can leak private information via different functionality | |||
0027727: CVE-2020-29605: Disclosure of private issue summary | ||||
Changeset | Prevent disclosure of private issue summary Insufficient access level checks allowed an attacker to display private Going through the provided list of issue IDs (bug_arr[]) and removing Credits to d3vpoo1 (https://gitlab.com/jrckmcsb) for reporting the issue. |
|||
mod - bug_actiongroup_page.php | Diff File |