-
Bug
-
Resolution: Fixed
-
Medium
-
4.2.1
-
None
according to CONF-25213 notifications with confidential information are sent though eMail "popular content" to users who don't have permissions to a specific space! ouch
Didn't tested 4.2.2 yet. If it's fixed, please close
- derived from
-
CONFSERVER-25213 Customers report that the recommended updates email goes to ALL LDAP users whether logged in or not
-
- Closed
-
- is incorporated by
-
JRASERVER-25181 Users without "Browse Users" permission cannot edit project roles
-
- Closed
-
This was fixed with
CONF-25284with commit 03783b5ae4756bd88f6bb477565e66a20974d23c. This went into 4.2.3, in reviewing this I've added another unit test.