mirror of
https://github.com/silverstripe/silverstripe-framework
synced 2024-10-22 12:05:37 +00:00
24 lines
1.1 KiB
Markdown
24 lines
1.1 KiB
Markdown
# 2.4.12
|
|
|
|
## Overview
|
|
|
|
### Security: Privilege escalation through Group hierarchy setting (SS-2013-003)
|
|
|
|
See [announcement](http://www.silverstripe.org/ss-2013-003-privilege-escalation-through-group-hierarchy-setting/)
|
|
|
|
### Security: Privilege escalation through Group and Member CSV upload (SS-2013-004)
|
|
|
|
See [announcement](http://www.silverstripe.org/ss-2013-004-privilege-escalation-through-group-and-member-csv-upload/)
|
|
|
|
### Security: Privilege escalation through APPLY_ROLES assignment (SS-2013-005)
|
|
|
|
See [announcement](http://www.silverstripe.org/ss-2013-005-privilege-escalation-through-apply-roles-assignment/)
|
|
|
|
## Changelog
|
|
|
|
### Bugfixes
|
|
|
|
* 2013-08-30 [a914dee] Disallow permissions assign for APPLY_ROLES (SS-2013-005) (Ingo Schommer)
|
|
* 2013-08-30 [6543b4e](https://github.com/silverstripe/silverstripe-cms/commit/6543b4e) Privilege escalation through Group and Member CSV upload (SS-2013-004) (Ingo Schommer)
|
|
* 2013-08-30 [ec8e826] Privilege escalation through APPLY_ROLES assignment (SS-2013-005) (Ingo Schommer)
|
|
* 2013-08-30 [7979515] Privilege escalation through Group hierarchy setting (SS-2013-003) (Ingo Schommer) |