Make WordPress Core

Changeset 12438


Ignore:
Timestamp:
12/17/2009 09:02:38 PM (16 years ago)
Author:
azaozz
Message:

Fix the 'current_user_can' check for 'add-comment'.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/wp-admin/admin-ajax.php

    r12399 r12438  
    637637case 'add-comment' :
    638638    check_ajax_referer( $action );
    639     if ( !current_user_can( 'edit_post', $id ) )
     639    if ( !current_user_can( 'edit_posts' ) )
    640640        die('-1');
    641641    $search = isset($_POST['s']) ? $_POST['s'] : false;
Note: See TracChangeset for help on using the changeset viewer.