|
@@ -91,8 +91,8 @@ def update_user( |
|
|
db: Session = Depends(get_db), |
|
|
db: Session = Depends(get_db), |
|
|
current_user: User = Depends(get_current_user), |
|
|
current_user: User = Depends(get_current_user), |
|
|
): |
|
|
): |
|
|
if current_user.Role != "Admin" and current_user.id != user_id: |
|
|
|
|
|
print(current_user.Role, current_user.id, user_id) |
|
|
|
|
|
|
|
|
if current_user.Role != "Admin" and current_user.Id != user_id: |
|
|
|
|
|
print(current_user.Role, current_user.Id, user_id) |
|
|
raise HTTPException( |
|
|
raise HTTPException( |
|
|
status_code=403, detail="You are not authorized to perform this action" |
|
|
status_code=403, detail="You are not authorized to perform this action" |
|
|
) |
|
|
) |
|
|