Permissions not or only improperly checked in some contexts #19

Atvērta
crtxcr atvēra 2020-09-21 22:08:26 +02:00 · 0 komentāri
Īpašnieks
  1. When a user has no permission to see the page history, he still knows about older entries from the global history pages, which can be a metadata leak. They should not be there

  2. Search must also consider permissions such as can_read etc.

1. When a user has no permission to see the page history, he still knows about older entries from the global history pages, which can be a metadata leak. They should not be there 2. Search must also consider permissions such as can_read etc.
crtxcr pievienoja
bug
enhancement
etiķetes 2020-09-21 22:08:26 +02:00
crtxcr nomainīts nosaukums no Permissions not or improperly checked in some contexts uz Permissions not or only improperly checked in some contexts 2020-09-21 22:08:37 +02:00
Pierakstieties, lai pievienotos šai sarunai.
Nav atskaites punktu
Nav atbildīgo
1 dalībnieki
Paziņojumi
Izpildes termiņš
Datums līdz nav korekts. Izmantojiet formātu 'gggg-mm-dd'.

Izpildes termiņš nav uzstādīts.

Atkarības

Nav atkarību.

Atsaucas uz: crtxcr/qswiki#19
No description provided.