X-Git-Url: http://wagnertech.de/gitweb/gitweb.cgi/timetracker.git/blobdiff_plain/4dcb88a76a3de466ee6116ae0852f53ba2b259a5..d31bcc34081a36b3f45c080f3a5cd231ec417fa9:/invoice_delete.php diff --git a/invoice_delete.php b/invoice_delete.php index 2bca58ce..ffdcf2c1 100644 --- a/invoice_delete.php +++ b/invoice_delete.php @@ -39,9 +39,14 @@ if (!$user->isPluginEnabled('iv')) { header('Location: feature_disabled.php'); exit(); } - $cl_invoice_id = (int)$request->getParameter('id'); $invoice = ttInvoiceHelper::getInvoice($cl_invoice_id); +if (!$invoice) { + header('Location: access_denied.php'); + exit(); +} +// End of access checks. + $invoice_to_delete = $invoice['name']; $form = new Form('invoiceDeleteForm');