[
https://issues.apache.org/jira/browse/SYNCOPE-474?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13866732#comment-13866732
]
ASF subversion and git services commented on SYNCOPE-474:
---------------------------------------------------------
Commit 1556848 from [~ilgrosso] in branch 'syncope/branches/1_1_X'
[ https://svn.apache.org/r1556848 ]
[SYNCOPE-474] Allowing self-read via username (even with roles)
> forbidden error when tried to change password
> ---------------------------------------------
>
> Key: SYNCOPE-474
> URL: https://issues.apache.org/jira/browse/SYNCOPE-474
> Project: Syncope
> Issue Type: Bug
> Components: console, core
> Affects Versions: 1.1.5
> Reporter: rajeswari
> Assignee: Francesco Chicchiriccò
> Fix For: 1.1.6, 1.2.0
>
> Attachments: bug.png
>
>
> I m getting forbidden error instead of user request when i tried to change
> the password of a user.
> > I logged in using the user claire (not admin)
> > clicked the username under logout button
> > and tried to change the password/roles
> Note: when a user is not assigned to any roles, i m able to change for the
> same user. if i assign any role i m getting the above error
> Thanks,
> Rajeswari
--
This message was sent by Atlassian JIRA
(v6.1.5#6160)