[wp-trac] [WordPress Trac] #63684: 'edit_user' capability returns true for user_id = 0 when logged out.
WordPress Trac
noreply at wordpress.org
Mon Jul 21 17:58:27 UTC 2025
#63684: 'edit_user' capability returns true for user_id = 0 when logged out.
--------------------------------------+-----------------------------
Reporter: dd32 | Owner: SergeyBiryukov
Type: defect (bug) | Status: closed
Priority: normal | Milestone: 6.9
Component: Role/Capability | Version:
Severity: minor | Resolution: fixed
Keywords: has-patch has-unit-tests | Focuses:
--------------------------------------+-----------------------------
Changes (by SergeyBiryukov):
* owner: (none) => SergeyBiryukov
* status: new => closed
* resolution: => fixed
Comment:
In [changeset:"60491" 60491]:
{{{
#!CommitTicketReference repository="" revision="60491"
Role/Capability: Ensure that logged-out users cannot edit themselves.
Follow-up to [3846], [6697], [14189], [21152].
Props dd32, peterwilsoncc, johnbillion, mukesh27, swissspidy,
SergeyBiryukov.
Fixes #63684.
}}}
--
Ticket URL: <https://core.trac.wordpress.org/ticket/63684#comment:3>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform
More information about the wp-trac
mailing list