mozilla / foundation-security-advisories

Canonical source for Mozilla Foundation Security Advisories. http://www.mozilla.org/security/announce/
Mozilla Public License 2.0
20 stars 32 forks source link

Link in recent sec advisory has restricted access #126

Closed stevejalim closed 1 year ago

stevejalim commented 1 year ago

The link below (from https://www.mozilla.org/en-US/security/advisories/mfsa2023-40/) goes to a page which requires Google Account authentication and, presumably because I get Access Denied after authenticating with a non-Mozilla account, appropriate access to view it.

Not sure if the permissions need to change, or if it's ok to have a closed link in the sec advisory, but flagging it here for a decision. Thanks very much in advance!

https://github.com/mozilla/foundation-security-advisories/blob/2a6bbaa8cc84357ecb50a03c888d2fb0742a9878/announce/2023/mfsa2023-40.yml#L18

tomrittervg commented 1 year ago

This is common - Both Google and Mozilla restrict security bug details for some time to give people time to upgrade before the full details become public.