From 3530397f1777332872eac2760f9aa0e2ae1d7450 Mon Sep 17 00:00:00 2001 From: Uwe Schindler Date: Sun, 8 Apr 2018 19:20:12 +0200 Subject: [PATCH] SOLR-11971: Add CVE number: CVE-2018-1308 --- solr/CHANGES.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/solr/CHANGES.txt b/solr/CHANGES.txt index c7270da5c64e..f91022447048 100644 --- a/solr/CHANGES.txt +++ b/solr/CHANGES.txt @@ -386,7 +386,7 @@ Bug Fixes * SOLR-11988: Fix exists() method in EphemeralDirectoryFactory/MockDirectoryFactory to prevent false positives (hossman) -* SOLR-11971: Don't allow referal to external resources in DataImportHandler's dataConfig request parameter. +* SOLR-11971: Don't allow referal to external resources in DataImportHandler's dataConfig request parameter (CVE-2018-1308). (麦 香浓郁, Uwe Schindler) * SOLR-12021: Fixed a bug in ApiSpec and other JSON resource loading that was causing unclosed file handles (hossman)