diff -r 71cb87b7dc3f -r d42d46e13b36 plugins/SpecialUpdownload.php --- a/plugins/SpecialUpdownload.php Thu Dec 17 04:31:55 2009 -0500 +++ b/plugins/SpecialUpdownload.php Thu Dec 17 22:42:32 2009 -0500 @@ -108,7 +108,8 @@ $ext = substr($filename, strrpos($filename, '.'), strlen($filename)); $flen = filesize($file['tmp_name']); - $comments = ( isset($_POST['update']) ) ? $db->escape($_POST['comments']) : $db->escape(RenderMan::preprocess_text($_POST['comments'], false, false)); + $perms = $session->fetch_page_acl($filename, 'File'); + $comments = ( isset($_POST['update']) ) ? $db->escape($_POST['comments']) : $db->escape(RenderMan::preprocess_text($_POST['comments'], false, false, true, $perms)); $chartag = sha1(microtime()); $urln = str_replace(' ', '_', $filename);