--- pages/manager/ManagerPaymentHandler.orig.inc.php 2010-02-08 12:28:42.000000000 -0800 +++ pages/manager/ManagerPaymentHandler.inc.php 2010-02-08 12:29:25.000000000 -0800 @@ -79,6 +79,7 @@ * Display all payments previously made */ function viewPayments($args) { + parent::validate(); $rangeInfo = &Handler::getRangeInfo('CompletedPayments'); $paymentDao = &DAORegistry::getDAO('OJSCompletedPaymentDAO'); $journal =& Request::getJournal(); @@ -96,6 +97,7 @@ * Display a single Completed payment */ function viewPayment($args) { + parent::validate(); $paymentDao = &DAORegistry::getDAO('OJSCompletedPaymentDAO'); $completedPaymentId = $args[0]; $payment = &$paymentDao->getCompletedPayment($completedPaymentId);