Steps to reproduce bug:
-Use demo
-Access the profile assignment tool
-Remove the admin profile from the root of the sitemap
-Assign administrator right on any page
-Access the front office
-Activate front edition and modify a content on that page
-Save the content
Bug:
JS:
[Ametys.cms.content.Content] Une erreur inattendue est survenue lors du verrouillage ou déverrouilage de contenus (La réponse du serveur est incomplète et ne contient pas les informations permettant de continuer le traitement correctement.)
Ametys Stacktrace:
Caused by: org.ametys.runtime.authentication.AccessDeniedException: User UserIdentity [login=XXXXX, population=utilisateurs] is not allowed to access front edition at org.ametys.plugins.frontedition.DispatchGenerator#_setContextInRequestAttributes:80 at org.ametys.core.ui.dispatcher.DispatchGenerator#_dispatching:130 at org.ametys.core.ui.dispatcher.DispatchGenerator#generate:95 at org.apache.cocoon.components.pipeline.AbstractProcessingPipeline#processXMLPipeline:581 ... 91 more
This means that customers are going to have to assign rights on the root of the sitemap instead of the desired page which is very dangerous.
- Référence
-
FRONTEDIT-237 Error when updating category of a classified ad or a name of a user
- Closed