ansible/changelogs/fragments/fetch_no_slurp.yml
Alicia Cozine f509a22f9d
add changelog categories, update CVE fragments to use security_fix category (#69968)
* use security_fix category in changelogs for CVEs

* these fragments do not say CVE but are security fixes

Co-authored-by: Alicia Cozine <acozine@users.noreply.github.com>
2020-06-11 10:24:01 -07:00

2 lines
124 B
YAML

security_fixes:
- In fetch action, avoid using slurp return to set up dest, also ensure no dir traversal CVE-2020-1735.