HandlerPageView: Prevent viewing older revisions if not allowed
This commit is contained in:
والد
d974d4bfb6
کامیت
5abaaf67d0
@ -90,6 +90,10 @@ Response HandlerPageView::handleRequest(PageDao &pageDao, std::string pagename,
|
|||||||
{
|
{
|
||||||
if(revisionid > 0)
|
if(revisionid > 0)
|
||||||
{
|
{
|
||||||
|
if(!effectivePermissions(pagename).canSeePageHistory())
|
||||||
|
{
|
||||||
|
return errorResponse("Error", "You are not allowed to view older revisions of this page");
|
||||||
|
}
|
||||||
revision = this->database->createRevisionDao()->getRevisionForPage(pagename, revisionid);
|
revision = this->database->createRevisionDao()->getRevisionForPage(pagename, revisionid);
|
||||||
if(!revision)
|
if(!revision)
|
||||||
{
|
{
|
||||||
|
بارگذاری…
x
مرجع در شماره جدید
Block a user