Skip to content

Commit 2b99230

Browse files
authored
fix(pedm): fix permissions when querying individual logs as non-elevated user (#1351)
1 parent 06913d0 commit 2b99230

1 file changed

Lines changed: 2 additions & 2 deletions

File tree

  • crates/devolutions-pedm/src/api

crates/devolutions-pedm/src/api/log.rs

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -16,8 +16,8 @@ async fn get_jit_elevation_log_id(
1616
) -> Result<Json<JitElevationLogRow>, Error> {
1717
let row = db.get_jit_elevation_log(id.id).await?.ok_or_else(|| Error::NotFound)?;
1818

19-
if !named_pipe_info.token.is_elevated()? {
20-
if !row.user.as_ref().map_or(true, |u| u != &named_pipe_info.user) {
19+
if row.user.as_ref().map_or(true, |u| u != &named_pipe_info.user) {
20+
if !named_pipe_info.token.is_elevated()? {
2121
return Err(Error::AccessDenied);
2222
}
2323
}

0 commit comments

Comments
 (0)