WordPress.org

Make WordPress Core


Ignore:
Timestamp:
07/22/2015 04:05:17 AM (5 years ago)
Author:
pento
Message:

Capabilities: When creating an auto-draft, ensure that the current user still has permission to do so.

Merge of [33357] to the 4.2 branch.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • branches/4.2/src/wp-admin/includes/dashboard.php

    r32175 r33358  
    418418function wp_dashboard_quick_press( $error_msg = false ) {
    419419    global $post_ID;
     420
     421    if ( ! current_user_can( 'edit_posts' ) ) {
     422        return;
     423    }
    420424
    421425    /* Check if a new auto-draft (= no new post_ID) is needed or if the old can be used */
Note: See TracChangeset for help on using the changeset viewer.