Document OJSI-201 (CVE-2019-12126) vulnerability
Issue-ID: OJSI-201
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: I11dfa0417c20f083c06b4ad4f697061489927b08
diff --git a/docs/sections/release-notes.rst b/docs/sections/release-notes.rst
index b3637a0..f073d0d 100644
--- a/docs/sections/release-notes.rst
+++ b/docs/sections/release-notes.rst
@@ -114,6 +114,7 @@
* In default deployment DCAEGEN2 (xdcae-tca-analytics) exposes HTTP port 32010 outside of cluster. [`OJSI-161 <https://jira.onap.org/browse/OJSI-161>`_]
* In default deployment DCAEGEN2 (dcae-redis) exposes redis port 30286 outside of cluster. [`OJSI-187 <https://jira.onap.org/browse/OJSI-187>`_]
* In default deployment DCAEGEN2 (config-binding-service) exposes HTTP port 30415 outside of cluster. [`OJSI-195 <https://jira.onap.org/browse/OJSI-195>`_]
+ * CVE-2019-12126 - DCAE TCA exposes unprotected APIs/UIs on port 32010. [`OJSI-201 <https://jira.onap.org/browse/OJSI-201>`_]
*Known Vulnerabilities in Used Modules*