1
0
Fork 1
mirror of https://github.com/mastodon/mastodon.git synced 2025-01-05 06:48:05 +00:00

Prevent admins and moderators eavesdropping in private and direct toots ()

Fix 
This commit is contained in:
Alda Marteau-Hardi 2018-04-07 21:33:01 +02:00 committed by Eugen Rochko
parent b5726def55
commit b65eb00c53

View file

@ -12,7 +12,7 @@ module Admin
def index
authorize :status, :index?
@statuses = @account.statuses
@statuses = @account.statuses.where(visibility: [:public, :unlisted])
if params[:media]
account_media_status_ids = @account.media_attachments.attached.reorder(nil).select(:status_id).distinct