|
From: Benjamin C. <bc...@us...> - 2002-04-04 15:35:17
|
Update of /cvsroot/phpbt/phpbt
In directory usw-pr-cvs1:/tmp/cvs-serv3374
Modified Files:
bug.php
Log Message:
Prevent going directly to a bug that is not visible because it belongs to a group that is not visible
Index: bug.php
===================================================================
RCS file: /cvsroot/phpbt/phpbt/bug.php,v
retrieving revision 1.93
retrieving revision 1.94
diff -u -r1.93 -r1.94
--- bug.php 3 Apr 2002 18:45:27 -0000 1.93
+++ bug.php 4 Apr 2002 13:54:03 -0000 1.94
@@ -537,10 +537,11 @@
}
function show_bug_printable($bugid) {
- global $db, $me, $t, $select, $TITLE, $QUERY;
+ global $db, $me, $t, $select, $TITLE, $QUERY, $restricted_projects;
if (!is_numeric($bugid) or
- !$row = $db->getRow(sprintf($QUERY['bug-printable'], $bugid))) {
+ !$row = $db->getRow(sprintf($QUERY['bug-printable'], $bugid,
+ $restricted_projects))) {
show_text($STRING['bugbadnum'],true);
exit;
}
@@ -599,10 +600,11 @@
}
function show_bug($bugid = 0, $error = array()) {
- global $db, $me, $t, $STRING, $TITLE, $u, $perm, $_gv, $QUERY;
+ global $db, $me, $t, $STRING, $TITLE, $u, $_gv, $QUERY, $restricted_projects;
if (!ereg('^[0-9]+$',$bugid) or
- !$row = $db->getRow(sprintf($QUERY['bug-show-bug'], $bugid))) {
+ !$row = $db->getRow(sprintf($QUERY['bug-show-bug'], $bugid,
+ $restricted_projects))) {
show_text($STRING['bugbadnum'],true);
return;
}
|