1
0
Fork 0
forked from fedi/mastodon

Fix potential private status leak (#10969)

This commit is contained in:
ThibG 2019-06-05 13:40:20 +02:00 committed by Eugen Rochko
parent d34a3a2cc7
commit 7fa23ec697

View file

@ -27,7 +27,7 @@ class StatusesController < ApplicationController
def show
respond_to do |format|
format.html do
unless user_signed_in?
if current_account.nil?
skip_session!
expires_in 10.seconds, public: true
end