mirror of
https://github.com/Dolibarr/dolibarr.git
synced 2025-12-06 01:28:19 +01:00
Fix #27029
This commit is contained in:
@@ -1051,7 +1051,7 @@ function checkUserAccessToObject($user, array $featuresarray, $object = 0, $tabl
|
||||
$sql .= " FROM ".MAIN_DB_PREFIX.$dbtablename." as dbt";
|
||||
$sql .= " WHERE dbt.rowid IN (".$db->sanitize($objectid, 1).")";
|
||||
$sql .= " AND dbt.".$dbt_keyfield." = ".((int) $user->socid);
|
||||
} elseif (isModEnabled("societe") && empty($user->rights->societe->client->voir)) {
|
||||
} elseif (isModEnabled("societe") && empty($user->rights->societe->client->voir)&& ($feature != 'knowledgemanagement')) {
|
||||
// If internal user without permission to see all thirdparties: Check permission for internal users that are restricted on their objects
|
||||
if ($feature != 'ticket') {
|
||||
if (empty($dbt_keyfield)) {
|
||||
|
||||
Reference in New Issue
Block a user