diff --git a/controllers/OrderController.php b/controllers/OrderController.php index a8e1fbd..9d2a409 100755 --- a/controllers/OrderController.php +++ b/controllers/OrderController.php @@ -405,9 +405,12 @@ * @var User $user */ $user = \Yii::$app->user->identity; - if ($model->isBlocked() && $model->edit_id !== \Yii::$app->user->id) { + if ($model->isBlocked() && $model->edit_id !== $user->id) { + $editUser = User::findOne($model->edit_id); if (!$user->isAdmin()) { - throw new ForbiddenHttpException(); + if (!empty($editUser)) { + throw new ForbiddenHttpException("Заказ закреплен за пользователем: " . $editUser->username); + } } } if (!empty($user->permissions)) { -- libgit2 0.21.4