Get a first look at what's coming. The Developer Passport Australia Release Preview kicks off March 12. Dive in! 

BAR Tile Displays All CG BARs After Browser Refresh, Allowing Unauthorized Task Creation

inyaykk
Kilo Explorer

When a user navigates to the BAR tile in EA Workspace, the initial view is filtered properly, showing only the BARs that the user either created or has been assigned.
However, after performing a browser refresh (F5 or page reload), the filtering breaks and the system returns all BARs created across the full 

This incorrect behavior allows users to:

  • View BARs they should not have access to
  • Open and interact with other users’ records
  • Create tasks on other people's BARs
  • Potentially modify workflows that do not belong to them

This is a major authorization and data exposure issue that violates expected access controls.

0 REPLIES 0