CVE

Id
85750  
CVE No.
CVE-2015-8473  
Status
Candidate  
Description
The Issues API in Redmine before 2.6.8, 3.0.x before 3.0.6, and 3.1.x before 3.1.2 allows remote authenticated users to obtain sensitive information in changeset messages by leveraging permission to read issues with related changesets from other projects.  
Phase
Assigned (20151204)  
Votes
None (candidate not yet proposed)  
Comments