Handle logged in users by not requiring username/email
Still post them as hidden to overcome validation, but still overwrite the values in backend to avoid manipulation
This commit is contained in:
parent
0cf90a74d7
commit
ee608539d4
2 changed files with 21 additions and 3 deletions
|
|
@ -174,6 +174,12 @@ class CommentsPlugin extends Plugin
|
|||
$email = filter_var(urldecode($post['email']), FILTER_SANITIZE_STRING);
|
||||
$title = filter_var(urldecode($post['title']), FILTER_SANITIZE_STRING);
|
||||
|
||||
$user = $this->grav['user'];
|
||||
if ($user->authenticated) {
|
||||
$name = $user->fullname;
|
||||
$email = $user->email;
|
||||
}
|
||||
|
||||
/** @var Language $language */
|
||||
$language = $this->grav['language'];
|
||||
$lang = $language->getLanguage();
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue