Project

General

Profile

Bug #30092

Content view version details can be viewed by an organization that the content view does not belong to

Added by James Jeffers 4 months ago. Updated 3 months ago.

Status:
Closed
Priority:
Normal
Assignee:
Category:
Content Views
Target version:
Difficulty:
Triaged:
Yes
Bugzilla link:

Description

Similar to https://projects.theforeman.org/issues/29013, current organization parameters are not supplied to the controller, and a full set of content view version details are displayed.

Steps to Reproduce:
1. Create 2 different organizations
2. Log into the first org.
3. Create cv and add some repos
4. publish
5. In that cv, switch org

Associated revisions

Revision fc4683b7 (diff)
Added by James Jeffers 4 months ago

Fixes #30092 - provide current organization as parameter for content view version requests

History

#1 Updated by James Jeffers 4 months ago

  • Bugzilla link set to 1817224

#2 Updated by James Jeffers 4 months ago

  • Found in Releases Katello 3.16.0 added

#3 Updated by The Foreman Bot 4 months ago

  • Assignee set to James Jeffers
  • Status changed from New to Ready For Testing
  • Pull request https://github.com/Katello/katello/pull/8759 added

#4 Updated by Chris Roberts 4 months ago

  • Triaged changed from No to Yes
  • Target version set to Katello 3.16.0

#5 Updated by The Foreman Bot 4 months ago

  • Fixed in Releases Katello 4.0.0 added

#6 Updated by James Jeffers 4 months ago

  • Status changed from Ready For Testing to Closed

#7 Updated by The Foreman Bot 3 months ago

  • Pull request https://github.com/Katello/katello/pull/8865 added

Also available in: Atom PDF