From 8d828e1fc35cc1909f5c27d1c5f1ff97264964e2 Mon Sep 17 00:00:00 2001 From: Grischa Brockhaus Date: Thu, 1 Mar 2012 13:41:27 +0100 Subject: [PATCH] Ian's patch: check goodtoken instead of token while approving comments via email link --- include/functions_comments.inc.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/include/functions_comments.inc.php b/include/functions_comments.inc.php index 3839f046..c518e4bc 100644 --- a/include/functions_comments.inc.php +++ b/include/functions_comments.inc.php @@ -658,7 +658,7 @@ function serendipity_approveComment($cid, $entry_id, $force = false, $moderate = $rs = serendipity_db_query($sql, true); // Check for adminEntriesMaintainOthers - if (!$force && !$token && $rs['entry_authorid'] != $serendipity['authorid'] && !serendipity_checkPermission('adminEntriesMaintainOthers')) { + if (!$force && !$goodtoken && $rs['entry_authorid'] != $serendipity['authorid'] && !serendipity_checkPermission('adminEntriesMaintainOthers')) { return false; // wrong user having no adminEntriesMaintainOthers right }