[wp-trac] Re: [WordPress Trac] #6014: Hook needed on wp_dropdown_roles() to secure 'edit_users' capability (see last comment)

WordPress Trac wp-trac at lists.automattic.com
Wed Oct 8 13:43:57 GMT 2008


#6014: Hook needed on wp_dropdown_roles() to secure 'edit_users' capability (see
last comment)
------------------------------------+---------------------------------------
 Reporter:  jeremyclarke            |        Owner:  jeremyclarke
     Type:  defect                  |       Status:  new         
 Priority:  high                    |    Milestone:  2.9         
Component:  Security                |      Version:              
 Severity:  major                   |   Resolution:              
 Keywords:  has-patch capabilities  |  
------------------------------------+---------------------------------------
Comment (by pishmishy):

 Please you clarify what you mean by 'higher level users' in precise terms.
 It may just be that there's some confusion as to which roles can do what
 (people seem to have different expectations).

-- 
Ticket URL: <http://trac.wordpress.org/ticket/6014#comment:19>
WordPress Trac <http://trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list