aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorJulien Lancelot <julien.lancelot@sonarsource.com>2014-01-29 11:22:51 +0100
committerJulien Lancelot <julien.lancelot@sonarsource.com>2014-01-29 11:23:00 +0100
commite8dc3b95a3302a38b46069129faa38c4393722c8 (patch)
tree64afb348660c0c1194b56e196dc83557295e08ba
parentd308760796411d5ed4ed6f158442ad5381c3f8b3 (diff)
downloadsonarqube-e8dc3b95a3302a38b46069129faa38c4393722c8.tar.gz
sonarqube-e8dc3b95a3302a38b46069129faa38c4393722c8.zip
Check that user is logged before displaying the bulk change form
-rw-r--r--sonar-server/src/main/webapp/WEB-INF/app/controllers/issues_controller.rb2
1 files changed, 2 insertions, 0 deletions
diff --git a/sonar-server/src/main/webapp/WEB-INF/app/controllers/issues_controller.rb b/sonar-server/src/main/webapp/WEB-INF/app/controllers/issues_controller.rb
index 06a56f0e8de..ca9a759774c 100644
--- a/sonar-server/src/main/webapp/WEB-INF/app/controllers/issues_controller.rb
+++ b/sonar-server/src/main/webapp/WEB-INF/app/controllers/issues_controller.rb
@@ -144,6 +144,8 @@ class IssuesController < ApplicationController
# GET /issues/bulk_change_form?[&criteria]
def bulk_change_form
+ access_denied unless logged_in?
+
issues_query_params = criteria_params.clone.merge({'pageSize' => -1})
# SONAR-4654 pagination parameters should be remove when loading issues for bulk change
issues_query_params.delete('pageIndex')