mirror of
				https://github.com/go-gitea/gitea.git
				synced 2025-10-31 21:28:11 +09:00 
			
		
		
		
	api: fix panic if anonymous user request admin API
Add sign in check before check user account level
This commit is contained in:
		| @@ -103,7 +103,7 @@ func ReqBasicAuth() macaron.Handler { | ||||
|  | ||||
| func ReqAdmin() macaron.Handler { | ||||
| 	return func(ctx *context.Context) { | ||||
| 		if !ctx.User.IsAdmin { | ||||
| 		if !ctx.IsSigned || !ctx.User.IsAdmin { | ||||
| 			ctx.Error(403) | ||||
| 			return | ||||
| 		} | ||||
|   | ||||
		Reference in New Issue
	
	Block a user