##// END OF EJS Templates
security: make sure the admin of repo can only delete comments which are from the same repo....
security: make sure the admin of repo can only delete comments which are from the same repo. - fixes IDOR issue - protects against other people comment deletion by repo admins.

File last commit:

r1792:a62f3dac default
r1818:1ced1b24 default
Show More
changeset_comment_block.mako
4 lines | 252 B | application/x-mako | MakoHtmlLexer
/ rhodecode / templates / changeset / changeset_comment_block.mako
## this is a dummy html file for partial rendering on server and sending
## generated output via ajax after comment submit
<%namespace name="comment" file="/changeset/changeset_file_comment.mako"/>
${comment.comment_block(c.co, inline=c.co.is_inline)}