Uploaded image for project: 'Help-Desk'
  1. Help-Desk
  2. HELP-16182

[fiware-stackoverflow] DELETE request for organizations does not require auth token

    Details

      Description

      Created question in FIWARE Q/A platform on 10-10-2019 at 12:10
      Please, ANSWER this question AT https://stackoverflow.com/questions/58320424/delete-request-for-organizations-does-not-require-auth-token

      Question:
      DELETE request for organizations does not require auth token

      Description:
      I've noticed when you are about to delete an organization the suggested request in docu is this one (subsection DELETE AN ORGANIZATION inside ORGANIZATION CRUD ACTIONS):

      curl -iX DELETE \
      'http://localhost:3005/v1/organizations/organization-id' \
      -H 'Content-Type: application/json' \

      Which does not include the X-Auth-token as part of the header.

      Could this result in a security issue (allowing anyone to delete any organization)?

        Activity

        fla Fernando Lopez made changes -
        Fix Version/s 2021 [ 12600 ]
        mohamed.sadiq Mohamed Sadiq made changes -
        Assignee Backlog Manager [ backlogmanager ]
        backlogmanager Backlog Manager made changes -
        Resolution Done [ 10000 ]
        Status In Progress [ 3 ] Closed [ 6 ]
        backlogmanager Backlog Manager made changes -
        Status Open [ 1 ] In Progress [ 3 ]
        backlogmanager Backlog Manager made changes -
        Field Original Value New Value
        Component/s FIWARE-TECH-HELP [ 10278 ]
        backlogmanager Backlog Manager created issue -

          People

          • Assignee:
            backlogmanager Backlog Manager
            Reporter:
            backlogmanager Backlog Manager
          • Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

            • Created:
              Updated:
              Resolved: