mirror of
https://github.com/dani-garcia/vaultwarden.git
synced 2026-03-09 04:32:44 -05:00
[PR #1333] [MERGED] Fix collection access issues for owner/admin users #2812
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
📋 Pull Request Information
Original PR: https://github.com/dani-garcia/vaultwarden/pull/1333
Author: @jjlin
Created: 1/27/2021
Status: ✅ Merged
Merged: 1/27/2021
Merged by: @BlackDex
Base:
master← Head:fix-manager-access📝 Commits (1)
67c6570Fix collection access issues for owner/admin users📊 Changes
1 file changed (+7 additions, -7 deletions)
View changed files
📝
src/auth.rs(+7 -7)📄 Description
The implementation of the
Manageruser type (#1242) introduced a regressionwhereby owner/admin users are incorrectly denied access to certain collection
APIs if their access control for collections isn't set to "access all".
Owner/admin users should always have full access to collection APIs, per
https://bitwarden.com/help/article/user-types-access-control/#access-control:
Fixes #1307.
🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.