Skip to main content

Notifications

Microsoft Dynamics 365 | Integration, Dataverse...
Unanswered

Data Visibility Issue with OData API in Dynamics CRM

(0) ShareShare
ReportReport
Posted on by 3
We have identified a security issue in Dynamics CRM where users accessing the system via the OData API can retrieve all data. This behavior violates expected security boundaries and could lead to unauthorized data exposure.
Please investigate and provide a resolution or guidance on how to limit data exposure based on user roles for OData API access.

 
Categories:

Under review

Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.

Helpful resources

News and Announcements

Announcing Category Subscriptions!

Quick Links

December Spotlight Star - Muhammad Affan

Congratulations to a top community star!

Top 10 leaders for November!

Congratulations to our November super stars!

Tips for Writing Effective Verified Answers

Best practices for providing successful forum answers ✍️

Leaderboard

#1
André Arnaud de Calavon Profile Picture

André Arnaud de Cal... 291,308 Super User 2024 Season 2

#2
Martin Dráb Profile Picture

Martin Dráb 230,320 Most Valuable Professional

#3
nmaenpaa Profile Picture

nmaenpaa 101,156

Leaderboard

Product updates

Dynamics 365 release plans