[buddypress-trac] [BuddyPress Trac] #8070: Missing 'edit_users' check in member_can_edit()

buddypress-trac noreply at wordpress.org
Wed Dec 8 21:49:04 UTC 2021


#8070: Missing 'edit_users' check in member_can_edit()
----------------------------------------+----------------------
 Reporter:  Venutius                    |       Owner:  dcavins
     Type:  defect (bug)                |      Status:  closed
 Priority:  normal                      |   Milestone:  10.0.0
Component:  Members                     |     Version:  4.2.0
 Severity:  normal                      |  Resolution:  fixed
 Keywords:  needs-patch good-first-bug  |
----------------------------------------+----------------------
Changes (by dcavins):

 * owner:  (none) => dcavins
 * status:  new => closed
 * resolution:   => fixed


Comment:

 In [changeset:"13161" 13161]:
 {{{
 #!CommitTicketReference repository="" revision="13161"
 In BP_Members_Admin, add checks for 'edit_users' capability.

 BP_Members_Admin checks the `bp_moderate`
 capability in several situations when
 checking whether or not the user can
 generally edit users is also a sensible check.

 Props venutius.

 Fixes #8070.
 Fixes #8072.
 Fixes #8073.
 }}}

-- 
Ticket URL: <https://buddypress.trac.wordpress.org/ticket/8070#comment:2>
BuddyPress Trac <http://buddypress.org/>
BuddyPress Trac


More information about the buddypress-trac mailing list