Role can be assigned to usergroup via DataAPi/OData without priv check

Uncategorized