Skip to content

Commit

Permalink
Fix the managers checking wrong fields for editing permissions (#1005)
Browse files Browse the repository at this point in the history
  • Loading branch information
BentiGorlich authored Aug 7, 2024
1 parent d1c4e34 commit 710755d
Show file tree
Hide file tree
Showing 4 changed files with 8 additions and 8 deletions.
4 changes: 2 additions & 2 deletions src/Service/EntryCommentManager.php
Original file line number Diff line number Diff line change
Expand Up @@ -106,8 +106,8 @@ public function create(EntryCommentDto $dto, User $user, $rateLimit = true): Ent
public function canUserEditComment(EntryComment $comment, User $user): bool
{
$entryCommentHost = null !== $comment->apId ? parse_url($comment->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$userHost = null !== $user->apId ? parse_url($user->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$magazineHost = null !== $comment->magazine->apId ? parse_url($comment->magazine->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$userHost = null !== $user->apId ? parse_url($user->apProfileId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$magazineHost = null !== $comment->magazine->apId ? parse_url($comment->magazine->apProfileId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');

return $entryCommentHost === $userHost || $userHost === $magazineHost || $comment->magazine->userIsModerator($user);
}
Expand Down
4 changes: 2 additions & 2 deletions src/Service/EntryManager.php
Original file line number Diff line number Diff line change
Expand Up @@ -174,8 +174,8 @@ private function setType(EntryDto $dto, Entry $entry): Entry
public function canUserEditEntry(Entry $entry, User $user): bool
{
$entryHost = null !== $entry->apId ? parse_url($entry->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$userHost = null !== $user->apId ? parse_url($user->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$magazineHost = null !== $entry->magazine->apId ? parse_url($entry->magazine->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$userHost = null !== $user->apId ? parse_url($user->apProfileId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$magazineHost = null !== $entry->magazine->apId ? parse_url($entry->magazine->apProfileId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');

return $entryHost === $userHost || $userHost === $magazineHost || $entry->magazine->userIsModerator($user);
}
Expand Down
4 changes: 2 additions & 2 deletions src/Service/PostCommentManager.php
Original file line number Diff line number Diff line change
Expand Up @@ -111,8 +111,8 @@ public function create(PostCommentDto $dto, User $user, $rateLimit = true): Post
public function canUserEditPostComment(PostComment $postComment, User $user): bool
{
$postCommentHost = null !== $postComment->apId ? parse_url($postComment->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$userHost = null !== $user->apId ? parse_url($user->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$magazineHost = null !== $postComment->magazine->apId ? parse_url($postComment->magazine->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$userHost = null !== $user->apId ? parse_url($user->apProfileId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$magazineHost = null !== $postComment->magazine->apId ? parse_url($postComment->magazine->apProfileId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');

return $postCommentHost === $userHost || $userHost === $magazineHost || $postComment->magazine->userIsModerator($user);
}
Expand Down
4 changes: 2 additions & 2 deletions src/Service/PostManager.php
Original file line number Diff line number Diff line change
Expand Up @@ -125,8 +125,8 @@ public function create(PostDto $dto, User $user, $rateLimit = true, bool $sticky
public function canUserEditPost(Post $post, User $user): bool
{
$postHost = null !== $post->apId ? parse_url($post->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$userHost = null !== $user->apId ? parse_url($user->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$magazineHost = null !== $post->magazine->apId ? parse_url($post->magazine->apId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$userHost = null !== $user->apId ? parse_url($user->apProfileId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');
$magazineHost = null !== $post->magazine->apId ? parse_url($post->magazine->apProfileId, PHP_URL_HOST) : $this->settingsManager->get('KBIN_DOMAIN');

return $postHost === $userHost || $userHost === $magazineHost || $post->magazine->userIsModerator($user);
}
Expand Down

0 comments on commit 710755d

Please sign in to comment.