View Issue Details

This bug affects 1 person(s).
 8
IDProjectCategoryView StatusLast Update
08054Bug reportsData Entry (non public)public2013-08-23 12:28
ReporterHendrik Assigned ToDenisChenu  
PrioritynormalSeverityminor 
Status closedResolutionfixed 
Product Version2.00+ 
Fixed in Version2.00+ 
Summary08054: Images are lost when a non-admin user saves them
Description

When an admin adds an image and saves, the image remains.
When a non-admin user saves, the images disappear.

Steps To Reproduce
  • Create a survey

  • As admin add an image (to the survey description or to a question)

  • Save the survey

    The image is visible.

  • Create a non-admin user

  • Give the non-admin user all permissions to the survey

  • Log in with the new non-admin account

  • Open the survey.

  • Save the survey again.

    The image has disappeared.

Additional Information

In the added lss I added the image again so this correctly contains the image.
The image disappears when a non-admin user saves the survey again.

TagsNo tags attached.
Attached Files
Bug heat8
Complete LimeSurvey version number (& build)130708
I will donate to the project if issue is resolvedNo
BrowserTested in FF, IE8 and Opera
Database type & versionMySql 5.1.66-0+squeeze1-log (Debian)
Server OS (if known)Debian 6.0.7
Webserver software & version (if known)Apache 2.2.16
PHP VersionPHP/5.3.3-7+squeeze16

Relationships

duplicate of 07949 closedDenisChenu non-admin users cannot save rich text in descriptions/questions. 

Users monitoring this issue

Hendrik

Activities

Hendrik

Hendrik

2013-07-30 09:34

reporter   ~25885

According to a user without admin rights, all markup is lost as well.

lowprofile

lowprofile

2013-08-09 13:07

reporter   ~25947

disable the xssfilter in the general options for a temporary fix
i have also reported this in a different bug

DenisChenu

DenisChenu

2013-08-20 20:01

developer   ~26034

I test again with last GIT version : and no problem : only <script> are removed

Think there are some update
https://github.com/LimeSurvey/LimeSurvey/commit/f0a34002834bf272350dbcdce7108a25e70b7b2b

DenisChenu

DenisChenu

2013-08-20 20:03

developer   ~26035

Can you look at your /application/core/LSYii_Validators.php if you have same than https://raw.github.com/LimeSurvey/LimeSurvey/f0a34002834bf272350dbcdce7108a25e70b7b2b/application/core/LSYii_Validators.php ?

This was fixed for question (tested).

DenisChenu

DenisChenu

2013-08-23 12:28

developer   ~26063

Please update to last version

Issue History

Date Modified Username Field Change
2013-07-26 10:26 Hendrik New Issue
2013-07-26 10:26 Hendrik File Added: limesurvey_survey_449166(1).lss
2013-07-26 10:39 Hendrik Issue Monitored: Hendrik
2013-07-30 09:34 Hendrik Note Added: 25885
2013-08-09 13:07 lowprofile Note Added: 25947
2013-08-20 20:01 DenisChenu Note Added: 26034
2013-08-20 20:02 DenisChenu Relationship added duplicate of 07949
2013-08-20 20:03 DenisChenu Note Added: 26035
2013-08-23 12:28 DenisChenu Note Added: 26063
2013-08-23 12:28 DenisChenu Status new => closed
2013-08-23 12:28 DenisChenu Assigned To => DenisChenu
2013-08-23 12:28 DenisChenu Resolution open => fixed
2013-08-23 12:28 DenisChenu Fixed in Version => 2.00+
2021-08-02 22:27 guest Bug heat 6 => 8