HandlerPageView: Prevent viewing older revisions if not allowed
This commit is contained in:
		| @@ -90,6 +90,10 @@ Response HandlerPageView::handleRequest(PageDao &pageDao, std::string pagename, | ||||
| 	{ | ||||
| 		if(revisionid > 0) | ||||
| 		{ | ||||
| 			if(!effectivePermissions(pagename).canSeePageHistory()) | ||||
| 			{ | ||||
| 				return errorResponse("Error", "You are not allowed to view older revisions of this page"); | ||||
| 			} | ||||
| 			revision = this->database->createRevisionDao()->getRevisionForPage(pagename, revisionid); | ||||
| 			if(!revision) | ||||
| 			{ | ||||
|   | ||||
		Viittaa uudesa ongelmassa
	
	Block a user