Back to bug 1946213

Who When What Removed Added
Paramvir jindal 2021-04-05 12:55:53 UTC Summary Business-central: Ruleflow Groups from other projects displayed on BPMN editor despite user having no access to those projects CVE-2021-20306 Business-central: Ruleflow Groups from other projects displayed on BPMN editor despite user having no access to those projects
Alias CVE-2021-20306
RaTasha Tillery-Smith 2021-04-12 16:41:03 UTC Doc Text A flaw was found in BPMN editor where any authenticated user from any project can see the name of Ruleflow Groups from other projects despite user having no access to those projects A flaw was found in the BPMN editor. Any authenticated user from any project can see the name of Ruleflow Groups from other projects, despite the user not having access to those projects. The highest threat from this vulnerability is to confidentiality.
Red Hat Bugzilla 2021-12-31 23:34:19 UTC CC almorale
Red Hat Bugzilla 2022-07-31 22:42:23 UTC CC tzimanyi
Red Hat Bugzilla 2022-08-12 04:38:08 UTC CC etirelli
Red Hat Bugzilla 2022-10-28 13:12:54 UTC CC krathod
Red Hat Bugzilla 2022-11-14 23:22:54 UTC CC jstastny
Red Hat Bugzilla 2023-05-15 18:03:45 UTC CC rrajasek
Red Hat Bugzilla 2023-07-07 08:29:26 UTC Assignee security-response-team nobody

Back to bug 1946213