Uploaded image for project: 'SonarQube'
  1. SonarQube
  2. SONAR-1912

Secure the database setup

    XMLWordPrintable

    Details

    • Type: Improvement
    • Status: Closed
    • Priority: Major
    • Resolution: Duplicate
    • Affects Version/s: None
    • Fix Version/s: None
    • Component/s: Database, Web
    • Labels:
      None

      Description

      The setup form is hidden (the url /setup must be known by administrators) but it is not secured. Anybody can start the database upgrade. The form should check user authorizations. The role 'administrator' is required.

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              Unassigned Unassigned
              Reporter:
              simon.brandhof Simon Brandhof (Inactive)
              Votes:
              1 Vote for this issue
              Watchers:
              1 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved: