From 41460db8aa1c8057724a8fd9462235fae365a1a0 Mon Sep 17 00:00:00 2001 From: James Bennett Date: Wed, 31 Mar 2021 21:22:45 -0700 Subject: [PATCH] Add CVE number to release notes. --- docs/upgrade.rst | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docs/upgrade.rst b/docs/upgrade.rst index c4ba88e..5b83d37 100644 --- a/docs/upgrade.rst +++ b/docs/upgrade.rst @@ -33,7 +33,7 @@ registration, the generated error report would include all fields submitted in the HTTP request, some of which are potentially sensitive depending on the user-account model and registration workflow in use. -This issue is CVE-XXXX and GitHub security advisory +This issue is CVE-2021-21416 and GitHub security advisory GHSA-58c7-px5v-82hh. Thanks to Martin Morgenstern for reporting this issue.