| @@ 216-235 (lines=20) @@ | ||
| 213 | return new WP_Error( 'unauthorized', 'User cannot view post', 403 ); |
|
| 214 | } |
|
| 215 | ||
| 216 | if ( |
|
| 217 | -1 == get_option( 'blog_public' ) && |
|
| 218 | /** |
|
| 219 | * Filter access to a specific post. |
|
| 220 | * |
|
| 221 | * @module json-api |
|
| 222 | * |
|
| 223 | * @since 3.4.0 |
|
| 224 | * |
|
| 225 | * @param bool current_user_can( 'read_post', $post->ID ) Can the current user access the post. |
|
| 226 | * @param WP_Post $post Post data. |
|
| 227 | */ |
|
| 228 | ! apply_filters( |
|
| 229 | 'wpcom_json_api_user_can_view_post', |
|
| 230 | current_user_can( 'read_post', $post->ID ), |
|
| 231 | $post |
|
| 232 | ) |
|
| 233 | ) { |
|
| 234 | return new WP_Error( 'unauthorized', 'User cannot view post', array( 'status_code' => 403, 'error' => 'private_blog' ) ); |
|
| 235 | } |
|
| 236 | ||
| 237 | if ( strlen( $post->post_password ) && !current_user_can( 'edit_post', $post->ID ) ) { |
|
| 238 | return new WP_Error( 'unauthorized', 'User cannot view password protected post', array( 'status_code' => 403, 'error' => 'password_protected' ) ); |
|
| @@ 1011-1030 (lines=20) @@ | ||
| 1008 | } |
|
| 1009 | } |
|
| 1010 | ||
| 1011 | if ( |
|
| 1012 | -1 == get_option( 'blog_public' ) && |
|
| 1013 | /** |
|
| 1014 | * Filter access to a specific post. |
|
| 1015 | * |
|
| 1016 | * @module json-api |
|
| 1017 | * |
|
| 1018 | * @since 3.4.0 |
|
| 1019 | * |
|
| 1020 | * @param bool current_user_can( 'read_post', $post->ID ) Can the current user access the post. |
|
| 1021 | * @param WP_Post $post Post data. |
|
| 1022 | */ |
|
| 1023 | ! apply_filters( |
|
| 1024 | 'wpcom_json_api_user_can_view_post', |
|
| 1025 | current_user_can( 'read_post', $post->ID ), |
|
| 1026 | $post |
|
| 1027 | ) |
|
| 1028 | ) { |
|
| 1029 | return new WP_Error( 'unauthorized', 'User cannot view post', array( 'status_code' => 403, 'error' => 'private_blog' ) ); |
|
| 1030 | } |
|
| 1031 | ||
| 1032 | if ( strlen( $post->post_password ) && !current_user_can( 'edit_post', $post->ID ) ) { |
|
| 1033 | return new WP_Error( 'unauthorized', 'User cannot view password protected post', array( 'status_code' => 403, 'error' => 'password_protected' ) ); |
|