From: skodak <skodak>
Date: Sun, 10 Jun 2007 19:35:05 +0000 (+0000)
Subject: MDL-10057 XSS risk flag for Add/update course category
X-Git-Url: http://git.mjollnir.org/gw?a=commitdiff_plain;h=89a792abaca2d18b0f59103b93a371551b62fdbe;p=moodle.git

MDL-10057 XSS risk flag for Add/update course category
---

diff --git a/lib/db/access.php b/lib/db/access.php
index adb71d1c11..7b23058838 100644
--- a/lib/db/access.php
+++ b/lib/db/access.php
@@ -391,6 +391,8 @@ $moodle_capabilities = array(
 
     'moodle/category:create' => array(
 
+        'riskbitmask' => RISK_XSS,
+
         'captype' => 'write',
         'contextlevel' => CONTEXT_COURSECAT,
         'legacy' => array(
@@ -409,6 +411,8 @@ $moodle_capabilities = array(
 
     'moodle/category:update' => array(
 
+        'riskbitmask' => RISK_XSS,
+
         'captype' => 'write',
         'contextlevel' => CONTEXT_COURSECAT,
         'legacy' => array(