zcml processing allows <securedutility> to override <class> with no warning

Bug #316813 reported by Brad Crittenden
2
Affects Status Importance Assigned to Milestone
Launchpad itself
Triaged
Low
Unassigned

Bug Description

Restrictions placed in a <class> directive in ZCML can be overridden by subsequent <securedutility> directives with no conflict being flagged. The problem is demonstrated in the following pasted diff where the original ignores the permission set for the method 'forReview' while the fixed version works.

https://pastebin.canonical.com/12607/

Changed in launchpad-foundations:
importance: Undecided → Low
status: New → Triaged
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.