cloudstack/plugins/api/discovery/src
dahn a6d9fa61b9
Role escalation prevention (#5879)
* prevent role access escallation

* hierarchy issue fixed

* create api list in account manager for checking new account access

* full api list check

* strange role restriction removed for BareMetal

* add role check on upfdate account as well

* more selective use of api checkers

* error msg and var name

Co-authored-by: Daan Hoogland <dahn@onecht.net>
2022-02-10 11:50:27 +05:30
..
main/java/org/apache/cloudstack Role escalation prevention (#5879) 2022-02-10 11:50:27 +05:30
test/java/org/apache/cloudstack/discovery Merge remote-tracking branch 'origin/4.11' 2018-12-04 16:39:21 +05:30