diff --git a/htdocs/user/class/api_users.class.php b/htdocs/user/class/api_users.class.php index 7038d521180..b2e30b6b8c5 100644 --- a/htdocs/user/class/api_users.class.php +++ b/htdocs/user/class/api_users.class.php @@ -316,7 +316,7 @@ class Users extends DolibarrApi public function post($request_data = null) { // Check user authorization - if (!DolibarrApiAccess::$user->hasRight('user', 'creer') && empty(DolibarrApiAccess::$user->admin)) { + if (!DolibarrApiAccess::$user->hasRight('user', 'user', 'creer') && empty(DolibarrApiAccess::$user->admin)) { throw new RestException(403, "User creation not allowed for login ".DolibarrApiAccess::$user->login); }