This project is archived. Its data is read-only.

IBM Entitlement issues with data-parition-id and Token

  • When execute get entitlement groups with invalid data-partition-id still returns groups
  • When adding member to the entitlement group with invalid role (Other than the ‘MEMBER’ or ‘OWNER’) still get success.
  • When create an entitlement group without authorization token it still allows to create the group.
  • When deleting a member from a group with invalid dat-partition-id it still allows to delete.
  • When execute the list all members without authorization token it still allows to retrieve the members.
  • When list all members in a group with invalid data-partition-id it still allows to retrieve the list.
Edited Nov 11, 2020 by Anuj Gupta
Assignee Loading
Time tracking Loading