Author: Derick Rethans (derickr)
Date: 2026-03-24T11:43:27Z
Commit:
https://github.com/php/web-bugs/commit/346df3f81d48d5b503b6bc96c17a2bcc067f2a60
Raw diff:
https://github.com/php/web-bugs/commit/346df3f81d48d5b503b6bc96c17a2bcc067f2a60.diff
Restrict search to logged in users
Changed paths:
M www/search.php
Diff:
diff --git a/www/search.php b/www/search.php
index 66910763..f9eddc4a 100644
--- a/www/search.php
+++ b/www/search.php
@@ -18,6 +18,13 @@
bugs_authenticate($user, $pw, $logged_in, $user_flags);
+if ($logged_in === false) {
+ response_header('Search Restricted');
+ display_bug_error("You must be logged in to use search");
+ response_footer();
+ exit;
+}
+
$is_security_developer = ($user_flags & (BUGS_TRUSTED_DEV |
BUGS_SECURITY_DEV));
$newrequest = http_build_query(array_merge($_GET, $_POST));