team information leakage (BB-7877)

Issue #6738 duplicate
Felix Stegerman
created an issue

I have 2 accounts, one for work (noxqsgit) and one private (obfusk). My private account is set to follow my work account. The newsfeed of my private account contains private team changes from my work account. Also, when I'm logged in with my private account, and visit the page of my work account, I can see which teams it is a part of, and how many members and repositories they have. Whilst not exactly problematic, there does seem to be some unexpected information leakage.

- Felix

Comments (2)

  1. Log in to comment