]> git.ipfire.org Git - thirdparty/bugzilla.git/commitdiff
Bug 1384100 - Lock out access to /new-bug in production
authorDylan William Hardison <dylan@hardison.net>
Thu, 27 Jul 2017 03:35:55 +0000 (20:35 -0700)
committerGitHub <noreply@github.com>
Thu, 27 Jul 2017 03:35:55 +0000 (20:35 -0700)
new_bug.cgi

index 2e903cfcebc691f14c9bbc1a08e0d91c8546dbf2..7f35f9ebc2b4730f2c8eec47bef471f61728be99 100644 (file)
@@ -46,6 +46,11 @@ my $cgi      = Bugzilla->cgi;
 my $template = Bugzilla->template;
 my $vars     = {};
 
+unless ($user->in_group('new-bug-testers')) {
+    print $cgi->redirect(correct_urlbase());
+    exit;
+}
+
 if (lc($cgi->request_method) eq 'post') {
      my $token = $cgi->param('token');
      check_hash_token($token, ['new_bug']);