Restricted users only see repos in orgs which their team was assigned to (#28025) (#28051)

Backport #28025 by @6543


---
*Sponsored by Kithara Software GmbH*

Co-authored-by: 6543 <m.huber@kithara.com>
pull/28090/head
Giteabot 1 year ago committed by GitHub
parent bc6477b36b
commit 073d8c50dd
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
  1. 8
      models/repo/repo_list.go

@ -652,12 +652,12 @@ func AccessibleRepositoryCondition(user *user_model.User, unitType unit.Type) bu
userOrgTeamUnitRepoCond("`repository`.id", user.ID, unitType),
)
}
cond = cond.Or(
// 4. Repositories that we directly own
builder.Eq{"`repository`.owner_id": user.ID},
cond = cond.Or(builder.Eq{"`repository`.owner_id": user.ID})
if !user.IsRestricted {
// 5. Be able to see all public repos in private organizations that we are an org_user of
userOrgPublicRepoCond(user.ID),
)
cond = cond.Or(userOrgPublicRepoCond(user.ID))
}
}
return cond

Loading…
Cancel
Save