[wp-trac] [WordPress Trac] #16501: 'Add Existing' button should be dependent on is_multisite

WordPress Trac wp-trac at lists.automattic.com
Wed Feb 9 12:30:58 UTC 2011


#16501: 'Add Existing' button should be dependent on is_multisite
--------------------------+------------------
 Reporter:  nacin         |       Owner:
     Type:  defect (bug)  |      Status:  new
 Priority:  normal        |   Milestone:  3.1
Component:  General       |     Version:
 Severity:  major         |  Resolution:
 Keywords:                |
--------------------------+------------------

Comment (by westi):

 Replying to [comment:1 linuxologos]:
 > * But giving '''promote_users''' grants the editor the capability to
 change the role of ANY account, admins included. He cannot edit the
 account directly, but the "Change role to..." dropdown is now fully
 functional and does not respect superior roles.
 >

 There is no such thing as a superior role (apart from maybe Super Admin).

 The ability to change the role has to be capability based - you shouldn't
 be giving this power to people you don't trust :)

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/16501#comment:4>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list