From 8c256e55608b3bde881abd23ae306ea1c2df783d Mon Sep 17 00:00:00 2001 From: ryan Date: Mon, 25 Jan 2010 22:50:36 +0000 Subject: [PATCH] add a cap check at the top of ms-delete-site.php. see #11644 git-svn-id: http://svn.automattic.com/wordpress/trunk@12829 1a063a9b-81f0-0310-95a4-ce76da25c4cd --- wp-admin/ms-delete-site.php | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/wp-admin/ms-delete-site.php b/wp-admin/ms-delete-site.php index dec358b08..293815b73 100644 --- a/wp-admin/ms-delete-site.php +++ b/wp-admin/ms-delete-site.php @@ -4,6 +4,10 @@ require_once('admin.php'); if ( !is_multisite() ) wp_die( __('Multisite support is not enabled.') ); +// @todo Create a delete blog cap. +if ( ! current_user_can('manage_options') ) + wp_die(__('You do not have sufficient permissions to delete this blog.')); + $action = isset($_POST['action']) ? $_POST['action'] : 'splash'; $title = __('Delete Blog');