Changeset 466:31147e2b4933


Ignore:
Timestamp:
Jun 16, 2012 1:45:32 PM (12 months ago)
Author:
slav0nic <slav0nic0@…>
Branch:
stable
Message:

reputation: check if post really belong to user

Files:
2 edited

Legend:

Unmodified
Added
Removed
  • .hgsubstate

    r430 r466  
    1 0f1fddaeb9771a8e0aeae35c8cd66e24058c0bcc projects 
     107a9dad465bbd8654713e8d9d0479b83a1097be6 projects 
  • djangobb_forum/forms.py

    r423 r466  
    352352        else: 
    353353            raise forms.ValidationError(_('You already voted for this post')) 
     354         
     355        # check if this post really belong to `from_user` 
     356        if not Post.objects.filter(pk=self.cleaned_data['post'].id, user=self.to_user).exists(): 
     357            raise forms.ValidationError(_('This post does\'t belong to this user')) 
     358 
    354359        return self.cleaned_data 
    355360 
Note: See TracChangeset for help on using the changeset viewer.