Skip to content
Snippets Groups Projects
Verified Commit 45b4105b authored by Nik | Klampfradler's avatar Nik | Klampfradler
Browse files

Amend changelog with CVE ID for CVE-2022-29773

parent 8ebf13f3
Branches prepare-release-2.7.1
No related tags found
1 merge request!1041Amend changelog with CVE ID for CVE-2022-25647
Pipeline #72645 passed with warnings
......@@ -29,15 +29,15 @@ Fixed
* The menu button used to be displayed twice on smaller screens.
* The icons were loaded from external servers instead from local server.
* Weekdays were not translated if system locales were missing
* Added locales-all to base image and note to docs
* The icons in the account menu were still the old ones.
* Due to a merge error, the once removed account menu in the sidenav appeared again.
* Scheduled notifications were shown on dashboard before time.
* Remove broken notifications menu item in favor of item next to account menu.
* [OAuth2] Resources which are protected with client credentials
allowed access if no scopes were allowed.
* [OAuth2] Resources which are protected with client credentials
allowed access if no scopes were allowed (CVE-2022-29773).
* The site logo could overlap with the menu for logos with an unexpected aspect ratio.
* Some OAuth2 views stopped working with long scope names.
* Resetting password was impossible due to a missing rule
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment