]> source.dussan.org Git - sonarqube.git/commitdiff
Fix security issue
authorsimonbrandhof <simon.brandhof@gmail.com>
Mon, 16 May 2011 21:38:43 +0000 (23:38 +0200)
committersimonbrandhof <simon.brandhof@gmail.com>
Mon, 16 May 2011 21:38:43 +0000 (23:38 +0200)
sonar-server/src/main/webapp/WEB-INF/app/controllers/settings_controller.rb

index e7f95603788d61a6aa3f695ea1b967b17c242c76..854c5f746db2244de26513bd868203f4eee13676 100644 (file)
@@ -32,6 +32,8 @@ class SettingsController < ApplicationController
       project=Project.by_key(params[:resource_id])
       return access_denied unless is_admin?(project)
       resource_id=project.id
+    else
+      return access_denied unless is_admin?
     end
 
     plugins = java_facade.getPluginsMetadata()