[wp-trac] [WordPress Trac] #10313: Editors not allowed to save settings on themes / plugins

WordPress Trac wp-trac at lists.automattic.com
Tue Jun 30 18:59:29 GMT 2009


#10313: Editors not allowed to save settings on themes / plugins
-----------------------------+----------------------------------------------
 Reporter:  alignak          |       Owner:       
     Type:  defect (bug)     |      Status:  new  
 Priority:  normal           |   Milestone:  2.8.1
Component:  Role/Capability  |     Version:  2.8  
 Severity:  major            |    Keywords:       
-----------------------------+----------------------------------------------
 Considering the simplest plugin code that saves some text on database (see
 sample attached).

 Login with your ADMIN username, and you will be able to save those
 settings to database.

 Now login with any EDITOR level user, and try to save the settings.
 You will get the message "Cheatin’ uh?" on yourdomain.com/wp-
 admin/options.php

 Also noticed that the level 5 was defined so editors should be able to
 save that with no problems at all.

 Tested up to 2.8.1 beta2

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/10313>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list