Browse Source

SONAR-16159 security fix

tags/9.4.0.54424
Aurelien Poscia 2 years ago
parent
commit
1dec25e60a

+ 1
- 2
server/sonar-webserver-webapi/src/main/java/org/sonar/server/setting/ws/SettingsWsSupport.java View File

@@ -31,14 +31,13 @@ import org.sonar.server.user.UserSession;

import static java.lang.String.format;
import static java.util.Arrays.stream;
import static java.util.Collections.singleton;
import static org.sonar.api.web.UserRole.ADMIN;

@ServerSide
public class SettingsWsSupport {
public static final String DOT_SECURED = ".secured";
@VisibleForTesting
static final Set<String> ADMIN_ONLY_SETTINGS = singleton("sonar.auth.bitbucket.workspaces");
static final Set<String> ADMIN_ONLY_SETTINGS = Set.of("sonar.auth.bitbucket.workspaces", "sonar.auth.github.organizations");

private final UserSession userSession;


Loading…
Cancel
Save