#6282: Authorization ignored for actions named like myAction ---------------------------+------------------------------------------------ Reporter: rostislav | Type: Bug Status: new | Priority: Medium Milestone: 1.2.x.x | Component: Auth Version: 1.2 Final | Severity: Normal Keywords: | Php_version: PHP 5 Cake_version: 1.2.1.8004 | ---------------------------+------------------------------------------------ Conditions:[[BR]] 1) Controller with Auth and $this->Auth->authorize = 'controller';[[BR]] 2) Action method 'function myAction()'[[BR]] Requested url http://loclhost/controller/myAction does not call isAuthorized in controller and allow to invoke action withtout authorization. [[BR]] Side effect - when requested http://loclhost/controller/my_action authorization works.[[BR]]
My solution: renamed all actions to 'my_action' style. -- Ticket URL: <https://trac.cakephp.org/ticket/6282> CakePHP : The Rapid Development Framework for PHP <https://trac.cakephp.org/> Cake is a rapid development framework for PHP which uses commonly known design patterns like ActiveRecord, Association Data Mapping, Front Controller and MVC. Our primary goal is to provide a structured framework that enables PHP users at all levels to rapidly develop robust web applications, without any loss to flexibility. --~--~---------~--~----~------------~-------~--~----~ You received this message because you are subscribed to the Google Groups "tickets cakephp" group. To post to this group, send email to tickets-cakephp@googlegroups.com To unsubscribe from this group, send email to tickets-cakephp+unsubscr...@googlegroups.com For more options, visit this group at http://groups.google.com/group/tickets-cakephp?hl=en -~----------~----~----~----~------~----~------~--~---