[Erp5-report] r41576 fx.algrain - in /erp5/trunk/bt5/erp5_commerce: SkinTemplateItem/portal...

nobody at svn.erp5.org nobody at svn.erp5.org
Tue Dec 21 11:44:53 CET 2010


Author: fx.algrain
Date: Tue Dec 21 11:44:53 2010
New Revision: 41576

URL: http://svn.erp5.org?rev=41576&view=rev
Log:
Prevent call of the script by the url.

Modified:
    erp5/trunk/bt5/erp5_commerce/SkinTemplateItem/portal_skins/erp5_commerce/SaleOrder_setShoppingCartBuyer.xml
    erp5/trunk/bt5/erp5_commerce/bt/revision

Modified: erp5/trunk/bt5/erp5_commerce/SkinTemplateItem/portal_skins/erp5_commerce/SaleOrder_setShoppingCartBuyer.xml
URL: http://svn.erp5.org/erp5/trunk/bt5/erp5_commerce/SkinTemplateItem/portal_skins/erp5_commerce/SaleOrder_setShoppingCartBuyer.xml?rev=41576&r1=41575&r2=41576&view=diff
==============================================================================
--- erp5/trunk/bt5/erp5_commerce/SkinTemplateItem/portal_skins/erp5_commerce/SaleOrder_setShoppingCartBuyer.xml [utf8] (original)
+++ erp5/trunk/bt5/erp5_commerce/SkinTemplateItem/portal_skins/erp5_commerce/SaleOrder_setShoppingCartBuyer.xml [utf8] Tue Dec 21 11:44:53 2010
@@ -51,6 +51,9 @@
         <item>
             <key> <string>_body</string> </key>
             <value> <string>"""Set connected user as shopping cart customer"""\n
+if REQUEST is not None:\n
+  raise RuntimeError, "You can not call this script from the URL"\n
+\n
 shopping_cart = context.SaleOrder_getShoppingCart()\n
 \n
 if person is None:\n
@@ -61,7 +64,7 @@ shopping_cart.edit(destination_decision_
         </item>
         <item>
             <key> <string>_params</string> </key>
-            <value> <string>person=None</string> </value>
+            <value> <string>person=None, REQUEST=None</string> </value>
         </item>
         <item>
             <key> <string>id</string> </key>

Modified: erp5/trunk/bt5/erp5_commerce/bt/revision
URL: http://svn.erp5.org/erp5/trunk/bt5/erp5_commerce/bt/revision?rev=41576&r1=41575&r2=41576&view=diff
==============================================================================
--- erp5/trunk/bt5/erp5_commerce/bt/revision [utf8] (original)
+++ erp5/trunk/bt5/erp5_commerce/bt/revision [utf8] Tue Dec 21 11:44:53 2010
@@ -1 +1 @@
-279
\ No newline at end of file
+280
\ No newline at end of file



More information about the Erp5-report mailing list