"Current Assignee" on Browse Permission creates security hole

XMLWordPrintable

    • 3.04

      Adding "Current Assignee" to the Browse permission for a project lets any user of the system see that project (they can't necessarily view issues or create issues, but they can see the project).

              Assignee:
              MarkC
              Reporter:
              Erik S
              Votes:
              0 Vote for this issue
              Watchers:
              6 Start watching this issue

                Created:
                Updated:
                Resolved:

                  Estimated:
                  Original Estimate - 7h
                  7h
                  Remaining:
                  Time Spent - 2h Remaining Estimate - 5h
                  5h
                  Logged:
                  Time Spent - 2h Remaining Estimate - 5h
                  2h