diff app/helpers/queries_helper.rb @ 510:1afe06d9ba94 cannam_integration

Merge from branch "cannam"
author Chris Cannam
date Thu, 14 Jul 2011 10:42:41 +0100
parents 0c939c159af4
children cbb26bc654de
line wrap: on
line diff
--- a/app/helpers/queries_helper.rb	Mon Jul 11 16:35:45 2011 +0100
+++ b/app/helpers/queries_helper.rb	Thu Jul 14 10:42:41 2011 +0100
@@ -70,6 +70,7 @@
       cond = "project_id IS NULL"
       cond << " OR project_id = #{@project.id}" if @project
       @query = Query.find(params[:query_id], :conditions => cond)
+      raise ::Unauthorized unless @query.visible?
       @query.project = @project
       session[:query] = {:id => @query.id, :project_id => @query.project_id}
       sort_clear