[wp-trac] [WordPress Trac] #40193: wp_ajax_crop_image capability checks too strict

WordPress Trac noreply at wordpress.org
Thu Aug 3 17:27:11 UTC 2017


#40193: wp_ajax_crop_image capability checks too strict
-------------------------------------------------+-------------------------
 Reporter:  Cybr                                 |       Owner:
     Type:  defect (bug)                         |      Status:  new
 Priority:  normal                               |   Milestone:  Awaiting
Component:  Media                                |  Review
 Severity:  normal                               |     Version:  4.3
 Keywords:  has-patch reporter-feedback needs-   |  Resolution:
  testing                                        |     Focuses:
                                                 |  administration
-------------------------------------------------+-------------------------
Changes (by johnbillion):

 * keywords:   => has-patch reporter-feedback needs-testing
 * focuses:  javascript, administration => administration


Comment:

 @Cybr Thanks for the report. What's the use case for a user being able to
 generated a crop of an image if they cannot edit the attachment?

 I think [attachment:40193.diff] should be sufficient, but there may well
 be a use case that I'm unaware of. Let me know!

--
Ticket URL: <https://core.trac.wordpress.org/ticket/40193#comment:3>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list