Project

General

Profile

Actions

Issues

Filters

Apply Clear

# Tracker Status Priority Subject Assignee Target version Category Tags
9559 bug New New OccurrenceServiceImpl.findRootUnitDTOs() and related methods suppress unpublished units Andreas Kohlbecker Release 5.46 cdmlib security specimen Actions
9230 bug Closed Highest Type in preparation of a published name displayed in PhycoBank Portal Name Page Andreas Kohlbecker Release 5.18 cdmlib phycobank security permission Actions
9220 bug Closed Highest adapt dataportal to /registrationDTO now using identifier as query parameter and secure against CVE-2007-0450 vulnerability Andreas Kohlbecker Release 5.18 cdm-dataportal security phycobank Actions
9218 bug Closed Highest Change /registrationDTO/identifier/... signatures to use query parameters instead Andreas Kohlbecker Release 5.18 cdmlib-remote security phycobank Actions
9083 bug New New Improve authorization handling in synonym details view (and generally) Katja Luther Release 5.46 taxeditor security Actions
9021 bug New Highest Feedback for missing rights on TaxonNode missing Katja Luther Release 5.46 taxeditor security permission UX Actions
8848 bug Feedback Highest Search fails with low data rate network (64kbit/s) network connection due to lost authentication Andreas Müller Release 5.13 taxeditor security permission Actions
8328 bug Closed Highest Unpublished record visible in Portal if related name is published Andreas Kohlbecker Release 5.13 cdm-dataportal phycobank permission security Actions
7833 bug Rejected New submitters can access see any registration in any RegistrationWorkingSet Andreas Kohlbecker Release 5.5 cdm-vaadin phycobank security Actions
7197 bug Closed Highest system-admin autheticated through RunAsAuthenticator can stay authenticated after RuntimeException Andreas Kohlbecker Release 4.13 cdm-vaadin security Actions
7147 bug New New GrantedAuthorityRevokingDeleteListener implemented Andreas Müller Unassigned CDM tickets cdmlib security Actions
7087 bug Worksforme New description/accumulateDistributions webservice can not be triggered Andreas Kohlbecker cdmlib-remote security cichorieae transmission-engine-distribution Actions
7033 bug New New protect User class methods from unauthorized use Andreas Kohlbecker Unassigned CDM tickets cdmlib security permission Actions
6894 bug Closed New NPE when trying drag&drop a Classification to the GrantedAuthority editor Katja Luther Release 4.10 taxeditor security Actions
6886 bug Duplicate New Entity creation for users having only CREATE may fail in long running conversations Andreas Müller cdmlib security Actions
6885 bug New New UserService.loadUserByUsername() cannot find user in long running session Andreas Müller Unassigned CDM tickets cdmlib security Actions
6798 bug Duplicate New NPE when trying to drag&drop a classification to the user rights editor Katja Luther taxeditor security Actions
6405 bug Closed New CdmPermissionVoter handles merged and separate CdmAuthorities the same Andreas Kohlbecker Release 4.6 cdmlib security Actions
6393 bug Closed Highest manage/* web service can be used by ajax requests Andreas Kohlbecker Release 4.6 cdmlib-remote security Actions
6272 bug New New Searching in user group bulk editor throws "unexpected error" if rights are not provided Katja Luther Unassigned CDM tickets taxeditor security Actions
6248 bug Closed Highest allow machine clients to access /manage/* OAuth2 protected web services Andreas Kohlbecker Release 4.5 cdmlib-remote security OAuth2 Actions
6106 bug Closed New [Discuss] Handle rights and roles for CdmPreferences Andreas Müller Release 5.28 cdmlib security preferences Actions
4847 bug In Progress Highest Problem with session attributes for a UI used in different CDM Instances Andreas Müller Reviewed Next Major Release cdm-vaadin security Actions
4307 bug Feedback Highest User with permission group 'Editor' cannot create new authorteam via wizzard Andreas Müller Euro+Med TaxEditor issues taxeditor permission security euro+med migration Actions
4300 bug Worksforme Highest Authority form does not work under Windows Andreas Kohlbecker taxeditor security permission Actions
4299 bug New New Show error when permission is denied ... Katja Luther Release 5.46 taxeditor permission security Actions
3098 bug New Priority13 CdmPermissionEvaluator can test for multiple permissions Andreas Müller Reviewed Next Major Release cdmlib security Actions
9862 feature request Closed New centralized password policy enforcement validator Andreas Kohlbecker Release 5.29 cdmlib security Actions
9829 feature request New New Secure writing methods for CdmPreferences with role Role_Project_Manager Andreas Müller Release 5.45 cdmlib security preferences fast Actions
8433 feature request Duplicate New Disallow user names with whitespace Andreas Müller cdmlib security Actions
8082 feature request New Priority14 cdm-server docker image allows running the cdm-server as non root user Katja Luther Reviewed Next Major Release cdmserver security docker Actions
7972 feature request Resolved Priority14 explicitly allow disallow access to HTTP Invoker endpoints (/remoting/**) Andreas Müller Release 5.5 cdmlib-remote phycobank security Actions
7492 feature request New New Withheld unpublished taxa from webservice used in other webservices Andreas Müller Euro+Med post migration cdmlib-remote phycobank search euro+med security permission Actions
7020 feature request New New Allow SpecimenOrObservationBaseVoter to make futher voting decision on base of multiple authorities Andreas Kohlbecker Unassigned CDM tickets cdmlib security Actions
7018 feature request Closed Highest implement a CdmPermissionVoter and default authorities for SpecimenOrObservationBase Andreas Kohlbecker Release 4.11 cdmlib security phycobank Actions
7016 feature request Rejected Highest implement a CdmPermissionVoter for TypeDesignations Andreas Kohlbecker Release 4.11 cdmlib security phycobank Actions
6867 feature request Closed New explicitely assign and revoke UPDATE & DELETE permission per enitity in the registration workflow Andreas Kohlbecker Release 4.13 cdm-vaadin permission security phycobank Actions
6852 feature request Closed New GrantedAuthorities and permission Groups for Phycobank Andreas Kohlbecker Release 4.10 cdm-vaadin phycobank security permission Actions
6655 feature request Rejected Highest Implement a RegistrationManager with state machine Andreas Kohlbecker cdm-vaadin phycobank permission security Actions
6654 feature request Closed Priority14 implement a CdmPermissionVoter for Registrations Andreas Kohlbecker Release 4.10 cdmlib security phycobank Actions
6332 feature request New Priority14 cdm-dataportal as oauth2 client of cdm-remote instances Andreas Kohlbecker Unassigned CDM tickets cdm-dataportal security OAuth2 Actions
6232 feature request New New secure OAuth2 grant types 'implicit' or 'password' by TSL/SSL. Andreas Kohlbecker Unassigned CDM tickets cdmlib-remote security OAuth2 Actions
6162 feature request New New Implement "Forgot your password?" button in the Taxeditor connect dialog Katja Luther Release 5.46 taxeditor security Actions
6161 feature request Closed Highest Service and webservice to recover forgotten passwords Andreas Kohlbecker Release 5.29 cdmlib security phycobank phycobank-ready-for-submitters Actions
5873 feature request In Progress New Implement rights&roles for TaxEditor distribution editor Katja Luther Release 5.46 taxeditor faunaEuropaea euro+med security permission Actions
4305 feature request In Progress Priority10 newly created entities must stay editable even if a user only has the permission to create them Andreas Kohlbecker Reviewed Next Major Release cdmlib permission security euro+med migration phycobank Actions
4298 feature request New New refresh views after changing rights Katja Luther Release 5.46 taxeditor security permission Actions
4118 feature request Feedback New @NotPartOf Annotation to exclude properties from the permission validation Andreas Müller Unassigned CDM tickets cdmlib security Actions
3133 feature request Closed Priority11 security: preparation and first steps for Role, CdmAuthority and GrantedAuthorityImpl implement GrantedAuthority Andreas Kohlbecker cdmlib security Actions
3097 feature request Worksforme Highest disable editors if a user has insufficient grants for a taxon or taxon node. Katja Luther taxeditor security permission Actions
3095 feature request New New protect taxa and nodes Katja Luther Release 5.46 taxeditor security permission Actions
9837 task In Progress Highest updadte vaadin to latets 7.* version Andreas Müller Release 5.45 cdm-vaadin security Actions
9219 task New Highest Revert: requests with %2F in URL are rejected by apache Andreas Kohlbecker Release 5.45 server-maintenance phycobank security Actions
8501 task New Priority14 setup OWASP vulnerability checker for projects Andreas Kohlbecker Release 5.46 devOps security Actions
8301 task New New Test family editor rights Andreas Müller Euro+Med TaxEditor issues cdmlib euro+med security Actions
7099 task Closed Highest Make CdmAuthority a persistable class Andreas Müller CDM UML 5.8 cdm security Actions
6879 task Closed Highest Update uuid and name for admin user group Andreas Müller CDM UML 5.0 cdm security Actions
6590 task New Priority14 Check if CdmVaadinAuthentication is a proper solution for handling authentications and SecurityContexts Andreas Kohlbecker Reviewed Next Major Release cdm-vaadin security phycobank Actions
6125 task New Priority11 Implement tests for OAuth2 in cdmlib-remote Andreas Kohlbecker Unassigned CDM tickets cdmlib-remote security OAuth2 Actions
6118 task Closed New evaluate spring-security-auth2 and spring-cloud-security as a framework for OAuth2 Andreas Kohlbecker Release 4.4 cdmlib security OAuth2 Actions
4600 task New New Investigate and implement tests for security in cdm-vaadin Andreas Kohlbecker Reviewed Next Major Release cdm-vaadin security Actions
3560 task Resolved Highest Withheld unpublished taxa from webservice used in E+M dataportal Andreas Müller Release 5.1 cdmlib-remote phycobank euro+med search security permission Actions
    (1-62/62) Per page: 25, 50, 100

    Also available in: Atom CSV PDF