Browse Source

Fixed that time logging form may disclose subjects of issues that are not visible (#21150).

Patch by Holger Just.

git-svn-id: http://svn.redmine.org/redmine/trunk@14795 e93f8b46-1217-0410-a6f0-8f06a7374b81
tags/3.2.0
Jean-Philippe Lang 8 years ago
parent
commit
c096dde88f
1 changed files with 1 additions and 1 deletions
  1. 1
    1
      app/views/timelog/_form.html.erb

+ 1
- 1
app/views/timelog/_form.html.erb View File

@@ -13,7 +13,7 @@
<% end %>
<p>
<%= f.text_field :issue_id, :size => 6 %>
<span id="time_entry_issue"><%= "#{@time_entry.issue.tracker.name} ##{@time_entry.issue.id}: #{@time_entry.issue.subject}" if @time_entry.issue %></span>
<span id="time_entry_issue"><%= "#{@time_entry.issue.tracker.name} ##{@time_entry.issue.id}: #{@time_entry.issue.subject}" if @time_entry.issue.try(:visible?) %></span>
</p>
<p><%= f.text_field :spent_on, :size => 10, :required => true %><%= calendar_for('time_entry_spent_on') %></p>
<p><%= f.text_field :hours, :size => 6, :required => true %></p>

Loading…
Cancel
Save