diff --git a/app/controllers/spree/admin/orders/customer_details_controller.rb b/app/controllers/spree/admin/orders/customer_details_controller.rb index 8bdd0990c4..2a1f7a2595 100644 --- a/app/controllers/spree/admin/orders/customer_details_controller.rb +++ b/app/controllers/spree/admin/orders/customer_details_controller.rb @@ -75,14 +75,10 @@ module Spree end def check_authorization - load_order - session[:access_token] ||= params[:token] - - resource = @order action = params[:action].to_sym action = :edit if action == :show # show route renders :edit for this controller - authorize! action, resource, session[:access_token] + authorize! action, @order end def set_guest_checkout_status