Changeset 4244

Show
Ignore:
Timestamp:
09/25/06 02:54:23 (2 years ago)
Author:
ryan
Message:

Don't show user form without privs. Props westi. fixes #3142

Files:

Legend:

Unmodified
Added
Removed
Modified
Copied
Moved
  • branches/2.0/wp-admin/user-edit.php

    r4229 r4244  
    2222} 
    2323 
     24$user_id = (int) $user_id; 
     25 
     26if ( !$user_id ) 
     27    die(__('Invalid user ID.')); 
     28 
    2429switch ($action) { 
    2530case 'switchposts': 
     
    3843 
    3944if (!current_user_can('edit_users')) 
    40     $errors['head'] = __('You do not have permission to edit this user.'); 
     45    die(__('You do not have permission to edit this user.')); 
    4146else 
    4247    $errors = edit_user($user_id); 
     
    5257$profileuser = get_user_to_edit($user_id); 
    5358 
    54 if (!current_user_can('edit_users')) $errors['head'] = __('You do not have permission to edit this user.'); 
     59if (!current_user_can('edit_users'))  
     60    die__('You do not have permission to edit this user.'); 
     61 
    5562?> 
    5663