Pierre Smits created OFBIZ-12457: ------------------------------------ Summary: VIEW permissions BillingAccount Key: OFBIZ-12457 URL: https://issues.apache.org/jira/browse/OFBIZ-12457 Project: OFBiz Issue Type: Improvement Components: accounting Affects Versions: Trunk Reporter: Pierre Smits Assignee: Pierre Smits
Currently, a user with only 'VIEW' permissions, as demonstrated in trunk demo with userId = auditor, accessing the billing account screen, sees editable fields and/or triggers (to requests) reserved for users with 'CREATE' or 'UPDATE' permissions. See (test with): https://demo-trunk.ofbiz.apache.org/accounting/control/EditBillingAccount?billingAccountId=9010 -- This message was sent by Atlassian Jira (v8.20.1#820001)