Details
-
Type: Patch
-
Status: Done/Fixed
-
Priority: Trivial
-
Resolution: Duplicate
-
Affects Version/s: 4.3.3
-
Fix Version/s: Unscheduled
-
Component/s: Core CiviCRM
-
Labels:
-
Documentation Required?:None
-
Funding Source:Needs Funding
Description
The list of contacts returned by a search has the edit link even though the user may not have edit rights. This can cause CiviCRM to revert to say the Joomla Adminstrator home page. The attached file ("..\CRM\Contact\Selector.php") contains a change that suppresses the link unless the user has Edit All Contacts privilege. Because the links aren't generate for each user, Selector.php can't apply ACLs to whether the Edit link is suppressed.
I'm unfamiliar with the system for supplying patches, so please forgive me if I am not using it correctly. No doubt someone with more familiarity with the coding standards will wish to correct/comment.
Attachments
Issue Links
- links to
(12 links to)