Files
dify/api/controllers/console
GareArc 69b11cc364 security: fix IDOR and privilege escalation in set_default_provider
- Add tenant_id verification to prevent IDOR attacks
- Add admin check for enterprise tenant-wide default changes
- Preserve non-enterprise behavior (users can set own defaults)
2026-01-26 16:01:06 -08:00
..
2025-11-24 10:04:11 +08:00
2025-11-24 10:04:11 +08:00