Closed (fixed)
Project:
Drupal core
Version:
8.7.x-dev
Component:
workspaces.module
Priority:
Normal
Category:
Bug report
Assigned:
Unassigned
Issue tags:
Reporter:
Created:
18 Dec 2018 at 16:05 UTC
Updated:
4 Jul 2019 at 08:59 UTC
Jump to comment: Most recent, Most recent file
Comments
Comment #2
alexpottNote the unnecessary use of
hein this comment is being tackled in #2286655: Gender neutral languageComment #4
jeqq commentedThis issue reveals that the bypass permission doesn't work correctly.
Comment #5
jeqq commentedThe same patch + test-only.
Comment #6
amateescu commentedAwesome, thanks for figuring this out! :)
Comment #8
jeqq commented.
Comment #9
jeqq commentedComment #10
jeqq commentedComment #11
alexpottCommitted 6253899 and pushed to 8.8.x. Thanks!
Committed a54ef47 and pushed to 8.7.x. Thanks!
I discussed this a bit with @Wim Leers and we agreed that since this is access it's important the code is clear whats happening so something like
is preferable because it makes it clear where the or is happening and that cacheability is dealt with correctly. I've made this change on commit.
Also I think we should add a test case that access is denied - so something like
Ahhh!!! We already have coverage of this in
\Drupal\Tests\workspaces\Functional\WorkspacePermissionsTest::testEditOwnWorkspace. So let's not do that here.I think we should open a follow-up to consider merging the test with
\Drupal\Tests\workspaces\Functional\WorkspaceViewTestand\Drupal\Tests\workspaces\Functional\WorkspacePermissionsTestas then it easier to spot holes in our coverage.Comment #14
alexpottComment #15
rosinegrean commented