id summary reporter owner description type status priority milestone component version severity resolution keywords cc branch changelog apichanges internalchanges 1220 Security Hole in Fine Grain Permission Richard Li Christopher Lenz "I discovered a security in fine grain permission. When browsing a Changeset with changes not authorized to access, the html based of the diff output is dropped, but one thing missing.... The availability to download the diff in other formats: Unified Diff breaks the protection to gain access to the unauthorized information." defect closed normal 0.8.1 version control/changeset view 0.8 major fixed authz