forked from e621ng/e621ng
[Users] Delete session on invalid user_id
Not a problem for prod but can happen for dev because of database resets Fixes #515
This commit is contained in:
parent
34c058a794
commit
384766b311
@ -103,8 +103,9 @@ private
|
||||
|
||||
def load_session_user
|
||||
user = User.find_by_id(session[:user_id])
|
||||
raise AuthenticationFailure if user.nil?
|
||||
return if session[:ph] != user.password_token
|
||||
CurrentUser.user = user if user
|
||||
CurrentUser.user = user
|
||||
end
|
||||
|
||||
def update_last_logged_in_at
|
||||
|
Loading…
Reference in New Issue
Block a user