Skip to content

when user doesn't have permission to access resource, http code 400 is returned  #13060

@duynguyenhoang

Description

@duynguyenhoang

Currently when user doesn't have permission to access resource, for example save a chart, the http code 400 is returned.

Expected results

http code 403 is returned.

Actual results

http code 400 is returned.

Environment

  • superset version: master
  • python version: 3.8
  • node.js version: v12.19.0

Checklist

Make sure to follow these steps before submitting your issue - thank you!

  • I have checked the superset logs for python stacktraces and included it here as text if there are any.
  • I have reproduced the issue with at least the latest released version of superset.
  • I have checked the issue tracker for the same issue and I haven't found one similar.

Additional context

Metadata

Metadata

Assignees

No one assigned

    Labels

    global:errorRelated to global errors affecting the platform

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions