diff --git a/htdocs/user/class/api_users.class.php b/htdocs/user/class/api_users.class.php index 24c03bb9037..4900141c01b 100644 --- a/htdocs/user/class/api_users.class.php +++ b/htdocs/user/class/api_users.class.php @@ -152,7 +152,7 @@ class Users extends DolibarrApi public function get($id, $includepermissions = 0) { $canread - if (empty(DolibarrApiAccess::$user->rights->user->user->lire) && empty(DolibarrApiAccess::$user->admin) && DolibarrApiAccess::$user->id != $id) { + if (empty(DolibarrApiAccess::$user->rights->user->user->lire) && empty(DolibarrApiAccess::$user->admin) && ($id == 0 || DolibarrApiAccess::$user->id != $id)) { throw new RestException(401, 'Not allowed'); }