Mercurial > hg > isophonics-drupal-site
view core/modules/tracker/src/Controller/TrackerUserRecent.php @ 13:5fb285c0d0e3
Update Drupal core to 8.4.7 via Composer. Security update; I *think* we've
been lucky to get away with this so far, as we don't support self-registration
which seems to be used by the so-called "drupalgeddon 2" attack that 8.4.5
was vulnerable to.
author | Chris Cannam |
---|---|
date | Mon, 23 Apr 2018 09:33:26 +0100 |
parents | 4c8ae668cc8c |
children |
line wrap: on
line source
<?php namespace Drupal\tracker\Controller; use Drupal\Core\Access\AccessResult; use Drupal\Core\Controller\ControllerBase; use Drupal\Core\Session\AccountInterface; use Drupal\user\UserInterface; /** * Controller for tracker.users_recent_content route. */ class TrackerUserRecent extends ControllerBase { /** * Content callback for the tracker.users_recent_content route. */ public function getContent(UserInterface $user) { module_load_include('inc', 'tracker', 'tracker.pages'); return tracker_page($user); } /** * Checks access for the users recent content tracker page. * * @param \Drupal\user\UserInterface $user * The user being viewed. * @param \Drupal\Core\Session\AccountInterface $account * The account viewing the page. * * @return \Drupal\Core\Access\AccessResult * The access result. */ public function checkAccess(UserInterface $user, AccountInterface $account) { return AccessResult::allowedIf($account->isAuthenticated() && $user->id() == $account->id()) ->cachePerUser(); } }