From 7a39ffc0be67563b2e36b2d7983556e11703f6e7 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Michal=20=C4=8Ciha=C5=99?= Date: Mon, 5 Mar 2012 10:44:11 +0100 Subject: [PATCH] Only logged in users can manage suggestions --- trans/views.py | 3 +++ 1 file changed, 3 insertions(+) diff --git a/trans/views.py b/trans/views.py index 919d5fd34..552e8daa7 100644 --- a/trans/views.py +++ b/trans/views.py @@ -120,6 +120,9 @@ def translate(request, project, subproject, lang): # Handle suggestions if 'accept' in request.GET or 'delete' in request.GET: + if not request.user.is_authenticated(): + messages.add_message(request, messages.ERROR, _('You need to login to be able to manage suggestions!')) + return HttpResponseRedirect('%s?type=%s&oldpos=%d&dir=stay' % (obj.get_translate_url(), rqtype, pos)) if 'accept' in request.GET: sugid = request.GET['accept'] else: