[wp-trac] [WordPress Trac] #26574: Dashboard shows inaccessible links for Authors and Contributors

WordPress Trac noreply at wordpress.org
Thu Dec 12 18:45:30 UTC 2013


#26574: Dashboard shows inaccessible links for Authors and Contributors
----------------------------+-----------------------------
 Reporter:  johnbillion     |      Owner:
     Type:  defect (bug)    |     Status:  new
 Priority:  low             |  Milestone:  Awaiting Review
Component:  Administration  |    Version:  3.8
 Severity:  minor           |   Keywords:
----------------------------+-----------------------------
 The "At a Glance" dashboard widget show "X Posts", "X Pages" and "X
 Comments" with links to the corresponding listing screens, but there are
 no capability checks in place when the links are output. This means Author
 level users see a link to the Pages screen that they don't have access to,
 and Contributors see a link to the Posts, Comments and Pages screens, none
 of which they have access to.

 In 3.7 and earlier, if the user didn't have the capability to edit the
 object then the text was shown without a link.

 Previously: #26495, #25824

--
Ticket URL: <http://core.trac.wordpress.org/ticket/26574>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list