Images.php
authoredward <edward@roojs.com>
Wed, 2 Dec 2015 08:09:29 +0000 (16:09 +0800)
committeredward <edward@roojs.com>
Wed, 2 Dec 2015 08:09:29 +0000 (16:09 +0800)
Images.php

index 62f917c..70d5365 100644 (file)
@@ -152,6 +152,12 @@ class Pman_Core_Images extends Pman
                 urlencode("image has been removed or deleted."));
             
         }
+        
+        if(!$this->hasPerm($img)){
+            header('Location: ' . $this->rootURL . '/Pman/templates/images/file-broken.png?reason=' .
+                urlencode("image has been removed or deleted."));
+        }
+        
         $this->serve($img);
         exit;
     }