Private messages linked to milestone: Subject line is not private
Submitted by rosetta.no on Wed, 09/17/2008 - 11:41.
| Project: | ProjectPier |
| Version: | 0.8.0.3 |
| Component: | Code |
| Category: | bug report |
| Priority: | critical |
| Assigned: | Unassigned |
| Status: | new |
Description
When you attach a private message to a milstone (private meaning for company memebers eyes only), members of *client* companies can still see the subject line of the message.
This should be considered a major security / privacy issue, since the company members would expect the message (content AND subject line) to be invisible to client members.
