Submitted by : simon at: 2009-10-28T14:19:51-07:00 (10 years ago)
Name :
Category : Severity : Status :
Optional subject :  
Optional comment :

An annoying bug that I feel has appeared in recent times, and is probably related to checking permissions within a method rather than in the pre-method declaration:

I visit a page like ZwikiFunding? which has edit permission granted only to manager and not acquired, with Safari 4 or Firefox 3. It seems to deny access when it shouldn't, when visiting /editform, or previewing or saving the edit, even after logging in to the zmi as manager.