##// END OF EJS Templates
security: make sure the admin of repo can only delete comments which are from the same repo....
security: make sure the admin of repo can only delete comments which are from the same repo. - fixes IDOR issue - protects against other people comment deletion by repo admins.

File last commit:

r1282:90601d74 default
r1818:1ced1b24 default
Show More
permissions_global.mako
10 lines | 352 B | application/x-mako | MakoHtmlLexer
${h.secure_form(url('admin_permissions_global'), method='post')}
<div class="form permissions-global">
<!-- fields -->
<div class="fields">
<%namespace name="dpb" file="/base/default_perms_box.mako"/>
${dpb.default_perms_radios(global_permissions_template = True)}
</div>
</div>
${h.end_form()}