[SERVER-347] security issue with class SavedContext? Created: 09/Oct/09 Updated: 12/Jul/16 Resolved: 11/Mar/10 |
|
| Status: | Closed |
| Project: | Core Server |
| Component/s: | None |
| Affects Version/s: | None |
| Fix Version/s: | 1.3.3 |
| Type: | Bug | Priority: | Minor - P4 |
| Reporter: | Dwight Merriman | Assignee: | Eliot Horowitz (Inactive) |
| Resolution: | Done | Votes: | 0 |
| Labels: | None | ||
| Remaining Estimate: | Not Specified | ||
| Time Spent: | Not Specified | ||
| Original Estimate: | Not Specified | ||
| Participants: |
| Description |
|
there may be issues with security when using the Context class - it resets the auth to allow anything. investigate. we should really elimiante that and be explicit when necessary to be safe. |
| Comments |
| Comment by Eliot Horowitz (Inactive) [ 11/Mar/10 ] |
|
got rid of SavedContext |