We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
2 parents 6528919 + f681d3c commit 09ed3f9Copy full SHA for 09ed3f9
1 file changed
classes/Visualizer/Module/AIBuilder.php
@@ -365,6 +365,9 @@ public function uploadData(): void {
365
366
// ── Database query ────────────────────────────────────────────────
367
case 'db_query':
368
+ if ( ! current_user_can( 'manage_options' ) && ! is_super_admin() ) {
369
+ wp_send_json_error( array( 'message' => __( 'Action not allowed for this user.', 'visualizer' ) ), 403 );
370
+ }
371
if ( empty( $_POST['db_query'] ) ) {
372
wp_send_json_error( array( 'message' => __( 'No query provided.', 'visualizer' ) ) );
373
}
0 commit comments