xiongzhu 2 年之前
父節點
當前提交
fd888da75d
共有 1 個文件被更改,包括 2 次插入1 次删除
  1. 2 1
      app/Controllers/Http/UserBalancesController.ts

+ 2 - 1
app/Controllers/Http/UserBalancesController.ts

@@ -20,8 +20,9 @@ export default class UserBalancesController {
         return userBalance
     }
 
-    public async show({ params }: HttpContextContract) {
+    public async show({ params, bouncer }: HttpContextContract) {
         const row = await UserBalance.findOrFail(params.id)
+        await bouncer.authorize('owner', row)
         return row
     }