From c7e7b6eed0ae09f6c13e0d1d23913384db39eeeb Mon Sep 17 00:00:00 2001 From: Colin Kuskie Date: Tue, 22 Sep 2009 13:35:16 -0700 Subject: [PATCH] remove debug code from CSRF code. --- docs/changelog/7.x.x.txt | 1 + lib/WebGUI/Operation/User.pm | 2 +- 2 files changed, 2 insertions(+), 1 deletion(-) diff --git a/docs/changelog/7.x.x.txt b/docs/changelog/7.x.x.txt index 914ff1332..d8f13d6f4 100644 --- a/docs/changelog/7.x.x.txt +++ b/docs/changelog/7.x.x.txt @@ -57,6 +57,7 @@ - fixed #11009: Shipping address is lost after login - fixed #11010: Purchasing non-recurring subscription twice does not extend group membership - fixed #11011: Inherit URL from parent can generate bad URLs + - fixed #11022: Deleting user shows "TRUE" prompt 7.7.19 - fixed #10838: Forwarded forum post email to new CS adds reply to original thread diff --git a/lib/WebGUI/Operation/User.pm b/lib/WebGUI/Operation/User.pm index e60754879..c8dfb8c27 100644 --- a/lib/WebGUI/Operation/User.pm +++ b/lib/WebGUI/Operation/User.pm @@ -87,7 +87,7 @@ sub _submenu { $ac->addSubmenuItem($user->getProfileUrl(), $i18n->get('view profile')); my $confirm = $i18n->get(167); $confirm =~ s/([\\\'])/\\$1/g; - $ac->addSubmenuItem($session->url->page('op=deleteUser;uid='.$userId), $i18n->get(750), qq|onclick="var ack = confirm('$confirm'); alert(ack); if (ack) { var thisForm=document.getElementById('$formId');thisForm.op.value='deleteUser';thisForm.submit();} return false;"|); + $ac->addSubmenuItem($session->url->page('op=deleteUser;uid='.$userId), $i18n->get(750), qq|onclick="var ack = confirm('$confirm'); if (ack) { var thisForm=document.getElementById('$formId');thisForm.op.value='deleteUser';thisForm.submit();} return false;"|); if ($session->setting->get("useKarma")) { $ac->addSubmenuItem($session->url->page("op=editUserKarma;uid=$userId"), $i18n->get(555)); }