Skip Menu |

This queue is for tickets about the CAS CPAN distribution.

Report information
The Basics
Id: 25358
Status: open
Estimated: 5 hours (300 min)
Priority: 4/10
Queue: CAS

People
Owner: SEANQ [...] cpan.org
Requestors: SEANQ [...] cpan.org
Cc:
AdminCc:

Bug Information
Severity: Normal
Broken in: 0.88
Fixed in: (no value)



Subject: read-only user objects
User objects created outside of the admin package should probably be read-only. Currently all user objects have access to the save method. Even if no real security is added to prevent any code using CAS from accessing the admin package (when it exists), it would still be safer if user objects could not be modified unless created explicitly for that purpose.