1
0
Fork 0
mirror of https://codeberg.org/forgejo/forgejo.git synced 2024-11-27 09:11:53 -05:00

Restricted users only see repos in orgs which their team was assigned to (#28025) (#28050)

Backport #28025 by @6543


---
*Sponsored by Kithara Software GmbH*

Co-authored-by: 6543 <m.huber@kithara.com>
This commit is contained in:
Giteabot 2023-11-14 23:44:38 +08:00 committed by GitHub
parent 69ea554e23
commit 439e071acf
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -637,12 +637,12 @@ func AccessibleRepositoryCondition(user *user_model.User, unitType unit.Type) bu
userOrgTeamUnitRepoCond("`repository`.id", user.ID, unitType), userOrgTeamUnitRepoCond("`repository`.id", user.ID, unitType),
) )
} }
cond = cond.Or( // 4. Repositories that we directly own
// 4. Repositories that we directly own cond = cond.Or(builder.Eq{"`repository`.owner_id": user.ID})
builder.Eq{"`repository`.owner_id": user.ID}, if !user.IsRestricted {
// 5. Be able to see all public repos in private organizations that we are an org_user of // 5. Be able to see all public repos in private organizations that we are an org_user of
userOrgPublicRepoCond(user.ID), cond = cond.Or(userOrgPublicRepoCond(user.ID))
) }
} }
return cond return cond