Răsfoiți Sursa

Send cookie FreshRSS_login only once

Prior to this patch, two cookies with the same name were sent, the first
one was to destroy the cookie, and the second one to create it
Alexandre Alapetite 9 ani în urmă
părinte
comite
0150aec07e
1 a modificat fișierele cu 1 adăugiri și 1 ștergeri
  1. 1 1
      app/Models/Auth.php

+ 1 - 1
app/Models/Auth.php

@@ -236,8 +236,8 @@ class FreshRSS_FormAuth {
 
 	public static function deleteCookie() {
 		$token = Minz_Session::getLongTermCookie('FreshRSS_login');
-		Minz_Session::deleteLongTermCookie('FreshRSS_login');
 		if (ctype_alnum($token)) {
+			Minz_Session::deleteLongTermCookie('FreshRSS_login');
 			@unlink(DATA_PATH . '/tokens/' . $token . '.txt');
 		}