Permissions not or only improperly checked in some contexts #19

开启中
crtxcr2020-09-21 22:08:26 +02:00创建 · 0 评论
管理员
  1. When a user has no permission to see the page history, he still knows about older entries from the global history pages, which can be a metadata leak. They should not be there

  2. Search must also consider permissions such as can_read etc.

1. When a user has no permission to see the page history, he still knows about older entries from the global history pages, which can be a metadata leak. They should not be there 2. Search must also consider permissions such as can_read etc.
crtxcr2020-09-21 22:08:26 +02:00 添加了标签
bug
enhancement
crtxcr2020-09-21 22:08:37 +02:00 修改标题 Permissions not or improperly checked in some contextsPermissions not or only improperly checked in some contexts
登录 并参与到对话中。
未选择里程碑
未指派成员
1 名参与者
通知
到期时间
到期日期无效或超出范围。请使用 'yyyy-mm-dd' 格式。

未设置到期时间。

依赖工单

没有设置依赖项。

参考:crtxcr/qswiki#19
没有提供说明。