Viewing 2 replies - 1 through 2 (of 2 total)
  • Actually, in upload.php I am checking for current_user_can(‘upload_files’) which seems to be the correct solution since ‘edit_files’ is deprecated.

    If you have any ideas on how to improve this, I’d be grateful for the input!

    /M;

    Thread Starter Jonas Lundman

    (@jonas-lundman)

    Maybe a second check for at least one other capabililty from contributor and up. In some cases users can upload their own avatar, or a pdf and crop this stuff in the edit media page.

    Im gonna keep an eye on this and come back later to suggest. Im working right now with access levels and user interface for a complex theme.

Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘Roles and cap, author can replace admin files’ is closed to new replies.