groupjive security issue not resolved

12 years 7 months ago #177450 by inscores
Replied by inscores on topic Re: Potential GJ security risks
i set the variables were only the super could make changes. i did not set up moderators etc cause i didnt need that feature.So it was just one super everyone else just registered members with no power. but with that said, the registered members who do not own groups or categories etc only the super, they still on my site could delete each other. Because i was on a time crunch with my client, i needed something that would not allow members to erase categories and others.I wish you could offered to give the help you just offered in this thread. However, i have had to put jomsocial up to please my client. they couldnt wait for your release date?? to get this fixed.So, i cant give you a screen shot cause i already had to install jomsocial and its working. thank you for your sincere apology!

Please Log in to join the conversation.

12 years 7 months ago #177454 by krileon
Replied by krileon on topic Re: Potential GJ security risks

i set the variables were only the super could make changes. i did not set up moderators etc cause i didnt need that feature.So it was just one super everyone else just registered members with no power. but with that said, the registered members who do not own groups or categories etc only the super, they still on my site could delete each other.

Ah, I see; not sure how that could've happened. Suspect some sort of bug in the authorization function of GJ perhaps. I unfortunately am not able to duplicate meaning is likely fixed already for next release. If you however run into this issue again please do immediately let me know and would be happy to investigate.

Because i was on a time crunch with my client, i needed something that would not allow members to erase categories and others.I wish you could offered to give the help you just offered in this thread. However, i have had to put jomsocial up to please my client.

That is unfortunate, but you must do what is best for your client. I apologize we couldn't meet an acceptable resolution for your issue in a timely fashion, but we are open source and majority community driven and do work as quickly as possible. It's sometimes important to stress to clients that a time increase maybe necessary to find an issue with the software used (which was of course out of your control). I will certainly try harder to be more responsive and again apologize for the inconvenience this has caused you and your client.

they couldnt wait for your release date?? to get this fixed

You wouldn't have to as I was prepared to install for you an internal build with next release fixes pre-applied. :)

So, i cant give you a screen shot cause i already had to install jomsocial and its working. thank you for your sincere apology!

No worries, we're still here and we'll still help to best of our ability as always. Again, I am sorry for all your troubles hope to have a better future relationship with you and any issues you run into. :)


Kyle (Krileon)
Community Builder Team Member
Before posting on forums: Read FAQ thoroughly + Read our Documentation + Search the forums
CB links: Documentation - Localization - CB Quickstart - CB Paid Subscriptions - Add-Ons - Forge
--
If you are a Professional, Developer, or CB Paid Subscriptions subscriber and have a support issue please always post in your respective support forums for best results!
--
If I've missed your support post with a delay of 3 days or greater and are a Professional, Developer, or CBSubs subscriber please send me a private message with your thread and will reply when possible!
--
Please note I am available Monday - Friday from 8:00 AM CST to 4:00 PM CST. I am away on weekends (Saturday and Sunday) and if I've missed your post on or before a weekend after business hours please wait for the next following business day (Monday) and will get to your issue as soon as possible, thank you.
--
My role here is to provide guidance and assistance. I cannot provide custom code for each custom requirement. Please do not inquire me about custom development.

Please Log in to join the conversation.

Moderators: beatnantkrileon
Time to create page: 0.206 seconds

Facebook Twitter LinkedIn