From f3723434eeeafb5a8b01eef6353833b607dace05 Mon Sep 17 00:00:00 2001 From: Roeland Jago Douma Date: Fri, 26 Jan 2018 11:22:20 +0100 Subject: [PATCH] Don't expose language and password as editable * Password might not always be editable - Also chaging that will invalide apptokens etc which will directly lock out your phone * Chaging the language also doesn't make that much sense to me currently Signed-off-by: Roeland Jago Douma --- apps/provisioning_api/lib/Controller/UsersController.php | 5 ----- 1 file changed, 5 deletions(-) diff --git a/apps/provisioning_api/lib/Controller/UsersController.php b/apps/provisioning_api/lib/Controller/UsersController.php index 1c7522d430..ca38a1d49c 100644 --- a/apps/provisioning_api/lib/Controller/UsersController.php +++ b/apps/provisioning_api/lib/Controller/UsersController.php @@ -309,11 +309,6 @@ class UsersController extends OCSController { $permittedFields[] = AccountManager::PROPERTY_EMAIL; } - $permittedFields[] = 'password'; - if ($this->config->getSystemValue('force_language', false) === false) { - $permittedFields[] = 'language'; - } - if ($this->appManager->isEnabledForUser('federatedfilesharing')) { $federatedFileSharing = new \OCA\FederatedFileSharing\AppInfo\Application(); $shareProvider = $federatedFileSharing->getFederatedShareProvider();