diff options
author | Lukas Fleischer <archlinux@cryptocrack.de> | 2014-02-06 09:04:10 +0100 |
---|---|---|
committer | Lukas Fleischer <archlinux@cryptocrack.de> | 2014-02-06 16:28:33 +0100 |
commit | b8a31dcc72703b4cd597e4ce681abcf6b0a3d507 (patch) | |
tree | e9fe57a6ead2acb1a5118f76142b7e7718889512 /web/lib/DB.class.php | |
parent | fb7bde3a6ca049700a691324c21005ae26782584 (diff) | |
download | aurweb-b8a31dcc72703b4cd597e4ce681abcf6b0a3d507.tar.xz |
Do not allow unauthenticated users to delete comments
Since commit fb7bde3 (Add support for anonymous comments, 2014-02-04),
we support comments with no specific author. Add a check to
canDeleteComment() and canDeleteCommentArray() to ensure an
unauthenticated user cannot delete such comments.
Signed-off-by: Lukas Fleischer <archlinux@cryptocrack.de>
Diffstat (limited to 'web/lib/DB.class.php')
0 files changed, 0 insertions, 0 deletions