[buddypress-trac] [BuddyPress Trac] #7598: Incorrect permission check when updating member type

buddypress-trac noreply at wordpress.org
Wed Sep 27 09:07:47 UTC 2017


#7598: Incorrect permission check when updating member type
--------------------------+----------------------
 Reporter:  meitar        |       Owner:  slaFFik
     Type:  defect (bug)  |      Status:  new
 Priority:  normal        |   Milestone:  3.0
Component:  Core          |     Version:
 Severity:  normal        |  Resolution:
 Keywords:                |
--------------------------+----------------------
Changes (by DJPaul):

 * keywords:  member type, roles, capabilities =>
 * component:  Administration => Core
 * milestone:  Awaiting Review => 3.0


Comment:

 Thank you for the detailed bug report, @meitar. I am also not sure what's
 going on here -- I'm hoping @r-a-y or @johnjamesjacoby can explain it to
 us -- but given we use `bp_current_user_can()` elsewhere already, and
 given that you said this fixes it for you (notwithstanding the fact this
 could be caused by a bug in your code), it seems OK to change all the
 references of this function where we explicitly check `bp_moderate`.

--
Ticket URL: <https://buddypress.trac.wordpress.org/ticket/7598#comment:1>
BuddyPress Trac <http://buddypress.org/>
BuddyPress Trac


More information about the buddypress-trac mailing list