ITISFoundation / voila-viewer

o²S²PARC service to render a Jupyter Notebook with voilà
MIT License
0 stars 0 forks source link

Are there security concerns when sharing with anonymous users? #2

Open elisabettai opened 1 year ago

elisabettai commented 1 year ago

Issue to collect feedback from our Security Experts when testing this template as anonymous user.

https://osparc-master.speag.com/study/c7c622e8-35c8-11ee-8bc5-02420ac12337

Note

The template has the service in app mode. We need to consider also if we need to share stuff that is not in the app mode.

Related issues

https://github.com/ITISFoundation/osparc-issues/issues/694 - New version of kember-viewer (deprecated) CRITICAL

mrnicegyu11 commented 1 year ago

There is a security concern for this, see https://github.com/ITISFoundation/osparc-simcore/issues/4593