Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bug: [Prod]Manager is able to make superadmin through permission groups #5026

Closed
2 tasks done
ashishdevtron opened this issue Apr 29, 2024 · 0 comments · Fixed by #5025
Closed
2 tasks done

Bug: [Prod]Manager is able to make superadmin through permission groups #5026

ashishdevtron opened this issue Apr 29, 2024 · 0 comments · Fixed by #5025
Assignees
Labels
bug Something isn't working

Comments

@ashishdevtron
Copy link
Contributor

ashishdevtron commented Apr 29, 2024

📜 Description

manager is able to assign super admin permissions through permission groups

👟 Reproduction steps

1.Create a permission group (for example:newgrp) having superadmin permission using the superadmin access.
2. Now give permission to a user as manager in devtron apps of a particular project.
3. Now SSO login using that user.
4. Now assign that already existing permission group(newgrp) to any non-superadmin user, now that non-superadmin user will have the access capabilities of superadmin.

👍 Expected behavior

Not able to make superadmin

👎 Actual Behavior

Able to make superadmin

☸ Kubernetes version

.

Cloud provider

.

🌍 Browser

Chrome

🧱 Your Environment

No response

✅ Proposed Solution

.

👀 Have you spent some time to check if this issue has been raised before?

  • I checked and didn't find any similar issue

🏢 Have you read the Code of Conduct?

AB#9637

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
3 participants