Only skip check_security checks if check_ownership and check_accessible are false

This commit is contained in:
mvdbeek
2017-08-20 11:24:09 +02:00
parent 2d16470132
commit cff306b86b
+1 -1
View File
@@ -87,7 +87,7 @@ class WorkflowsManager(object):
workflowinvocations. Throw an exception or returns True if user has
needed level of access.
"""
if not check_ownership or check_accessible:
if not check_ownership and not check_accessible:
return True
# If given an invocation verify ownership of invocation