Ver código fonte

Add early exit if account is deleted in login method

tags/v0.10.5
Kristijan Mitrovic 4 anos atrás
pai
commit
39d49c1d94
1 arquivos alterados com 1 adições e 1 exclusões
  1. +1
    -1
      bubble-server/src/main/java/bubble/resources/account/AuthResource.java

+ 1
- 1
bubble-server/src/main/java/bubble/resources/account/AuthResource.java Ver arquivo

@@ -306,7 +306,7 @@ public class AuthResource {
if (!request.hasName()) return invalid("err.name.required", "name is required");
if (!request.hasPassword()) return invalid("err.password.required", "password is required");
final Account account = accountDAO.findByName(request.getName());
if (account == null) return notFound(request.getName());
if (account == null || account.deleted()) return notFound(request.getName());
if (!account.getHashedPassword().isCorrectPassword(request.getPassword())) {
return notFound(request.getName());
}


Carregando…
Cancelar
Salvar