Task #52506

Work Package #49943: Security

WorkspacesController: Remove workspace selection feature

Added by Andreas Förthner almost 2 years ago. Updated almost 2 years ago.

Status:Resolved Start date:2013-10-03
Priority:Should have Due date:
Assigned To:- % Done:

100%

Category:Content Management Spent time: -
Target version:1.0 beta 1

Description

As currently every user has only one workspace, we can pin him automatically to this workspace. The parameter in the index-, publishWorkspace- and discardWorkspaceAction should be ignored as long as we have no security checks for workspaces...

Associated revisions

Revision 9321a008
Added by Andreas Förthner almost 2 years ago

[TASK] Disallow access to foreign workspaces

The workspace module currently allows
to show, publish and discard workspaces
of other users.
Since we currently only have per user workspaces,
this change disables the selection of other
workspaces in the workspaces module controller
so that only access to the workspace of
the currently logged in user is possible.

Resolves: #52506
Resolves: #52504
Change-Id: I01be491ba5bd415f861fc459e7c5e0bb74c897f6
Reviewed-on: https://review.typo3.org/24342
Reviewed-by: Andreas Förthner
Tested-by: Andreas Förthner

History

#1 Updated by Gerrit Code Review almost 2 years ago

Patch set 1 for branch master has been pushed to the review server.
It is available at https://review.typo3.org/24342

#2 Updated by Gerrit Code Review almost 2 years ago

Patch set 2 for branch master has been pushed to the review server.
It is available at https://review.typo3.org/24342

#3 Updated by Gerrit Code Review almost 2 years ago

  • Status changed from New to Under Review

Patch set 3 for branch master has been pushed to the review server.
It is available at https://review.typo3.org/24342

#4 Updated by Gerrit Code Review almost 2 years ago

Patch set 4 for branch master has been pushed to the review server.
It is available at https://review.typo3.org/24342

#5 Updated by Gerrit Code Review almost 2 years ago

Patch set 5 for branch master has been pushed to the review server.
It is available at https://review.typo3.org/24342

#6 Updated by Gerrit Code Review almost 2 years ago

Patch set 6 for branch master has been pushed to the review server.
It is available at https://review.typo3.org/24342

#7 Updated by Gerrit Code Review almost 2 years ago

Patch set 7 for branch master has been pushed to the review server.
It is available at https://review.typo3.org/24342

#8 Updated by Andreas Förthner almost 2 years ago

  • Status changed from Under Review to Resolved
  • % Done changed from 0 to 100

Applied in changeset commit:9321a008fc82e77c3da70d360067be337e9b726c.

Also available in: Atom PDF