dotCMS / core

Headless/Hybrid Content Management System for Enterprises
http://dotcms.com
Other
849 stars 467 forks source link

Permission Hierarchy Review #29024

Open sfreudenthaler opened 3 months ago

sfreudenthaler commented 3 months ago

Parent Issue

https://github.com/dotCMS/private-issues/issues/31

Task

I got the following from @mbiuki

Roles and tools

As a limited user with access to the config tool group, I am able to change the access for the CMS Administrator role, which doesn’t make sense as I should not be able to limit access for admins.

Proposed Objective

Security & Privacy

Proposed Priority

Priority 3 - Average

Acceptance Criteria

from @mbiuki

possible acceptance criteria

External Links... Slack Conversations, Support Tickets, Figma Designs, etc.

Assumptions & Initiation Needs

No response

Quality Assurance Notes & Workarounds

No response

Sub-Tasks & Estimates

No response

github-actions[bot] commented 5 days ago

This issue is stale because it has been open 90 days with no activity. Remove stale label or comment or this will be closed in 30 days.