Details
-
Bug
-
Resolution: Done
-
P1: Critical
-
2011q4
-
RC\-V2.2.1-INT-016
Description
This is a follow up from QTQAINFRA-167 – the whole codereview must be moved to HTTPS only, since it's a security risk. A malicious user could sniff the cookies/authentication headers, steal the IP address, and act as an Approver (thus pushing arbitrary code into Qt).
Attachments
Issue Links
- relates to
-
QTQAINFRA-357 Gerrit should be publically, anonymously accessible
- Closed