xcode75 / XManagerPlus

An Xray Manager
255 stars 47 forks source link

Role-based Access Issue: User Sees Unauthorized Server Configurations #304

Closed aliafshany closed 8 months ago

aliafshany commented 9 months ago

I am using the latest version as of today: XMPlus 1.0 - v20230909.

When I assign a user's role to the customer's service, that user can see all the servers when they update the subscription link, even though their plan group has not changed.

For example, User1 has group A. When I add the customer's service role, User1 updates the link and can then see group A, B, and C configurations. However, User1 cannot connect to them, fortunately.

Is this a bug?

xcode75 commented 9 months ago
