Index: branches/5.0.x/core/units/form_submissions/form_submissions_eh.php =================================================================== diff -u -N -r12511 -r12726 --- branches/5.0.x/core/units/form_submissions/form_submissions_eh.php (.../form_submissions_eh.php) (revision 12511) +++ branches/5.0.x/core/units/form_submissions/form_submissions_eh.php (.../form_submissions_eh.php) (revision 12726) @@ -1,6 +1,6 @@ Application->IsAdmin()) { + if (!$this->Application->isAdmin) { if ($event->Name == 'OnCreate') { // anybody can submit forms on front return true; @@ -118,9 +118,11 @@ function getPassedID(&$event) { - if (!$this->Application->IsAdmin()) { + if (!$this->Application->isAdminUser) { + // no way to see other user's form submission by giving it's ID directly in url return 0; } + return parent::getPassedID($event); }