silverstripe / silverstripe-graphql

Serves Silverstripe data as GraphQL representations
BSD 3-Clause "New" or "Revised" License
52 stars 61 forks source link

[CVE-2023-44401] Ensure canView() checks are run #568

Closed GuySartorelli closed 7 months ago

GuySartorelli commented 7 months ago

This should match https://github.com/silverstripe-security/silverstripe-graphql/pull/18 exactly

CI has already passed in the security repository. Any CI failures that are present there are expected and accounted for. This can be merged safely without waiting for CI to run again. CI will run after merging anyway, and is a safeguard prior to patching.

Issues