diff --git a/app/Http/Controllers/CatalogController.php b/app/Http/Controllers/CatalogController.php index d5e2427..d4ff3cd 100644 --- a/app/Http/Controllers/CatalogController.php +++ b/app/Http/Controllers/CatalogController.php @@ -167,7 +167,7 @@ class CatalogController extends Controller abort(404); } - if (!$user == $item->user && !$user->admin) { + if (!$user == $item->user || !$user->admin) { abort(403); } @@ -183,7 +183,7 @@ class CatalogController extends Controller abort(404); } - if (!$user == $item->user && !$user->admin) { + if (!$user == $item->user || !$user->admin) { abort(403); }