From fc3a39d464b1303f0b7d01d0160f81cbbb80a98b Mon Sep 17 00:00:00 2001 From: James Moger <james.moger@gitblit.com> Date: Sun, 07 Sep 2014 11:42:40 -0400 Subject: [PATCH] Create infrastructure for XSS sanitization --- src/main/java/com/gitblit/models/UserModel.java | 6 +++--- 1 files changed, 3 insertions(+), 3 deletions(-) diff --git a/src/main/java/com/gitblit/models/UserModel.java b/src/main/java/com/gitblit/models/UserModel.java index 64bca82..e152274 100644 --- a/src/main/java/com/gitblit/models/UserModel.java +++ b/src/main/java/com/gitblit/models/UserModel.java @@ -552,15 +552,15 @@ } return false; } - + /** * Returns true if the user is allowed to administer the specified repository - * + * * @param repo * @return true if the user can administer the repository */ public boolean canAdmin(RepositoryModel repo) { - return canAdmin() || isMyPersonalRepository(repo.name); + return canAdmin() || repo.isOwner(username) || isMyPersonalRepository(repo.name); } public boolean isAuthenticated() { -- Gitblit v1.9.1