plone.restapi is active without installing
Open
Nobody has claimed this yet.
01 type: bug
31 needs: help
- Dominant language
- Python
- Stars
- 109
- Forks
- 107
- Avg merge
- 2d 3h
- Merged PRs (30d)
- 4
Description
Set up Plone 5.2 on Python 3.7. Spawn a new Plone site. Try to create an item in Plone via REST.
>>> import requests
>>> r = requests.post('http://localhost:8080/Plone/', headers={ 'Accept': 'application/json', 'Content-Type': 'application/json', }, json={ '@type': 'Document', 'title': 'My Document', }, auth=('admin', '******'))
>>> r
<Response [201]>
Imho it should not work because you have not installed plone.restapi in the configuration.
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Reproduce the reported setup with Plone 5.2 on Python 3.7, create a new Plone site, and send the documented POST request to the site root. Trace why the REST endpoint accepts the request without plone.restapi being installed or enabled. Done means the behavior matches the expected installation configuration and a regression test covers it.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- python
- Domain
- api, backend
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Quiet
- Clarity
- Mostly clear
- Newbie friendliness
- 45/100