Security Advisory
CVE-2018-5123
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
A third party website can access information available to a user with access to a restricted bug entry using the image generation in report.cgi in all Bugzilla versions prior to 4.4.