From 630f5d5b8582044c803e0823d0e032064fda6851 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Bar=C4=B1=C5=9F=20Soner=20U=C5=9Fakl=C4=B1?= Date: Tue, 18 Feb 2020 16:06:05 -0500 Subject: [PATCH] fix: only call clearCookie for logged in users --- .gitignore | 1 + src/middleware/headers.js | 2 +- 2 files changed, 2 insertions(+), 1 deletion(-) diff --git a/.gitignore b/.gitignore index 72399b5f92..4be45e03e6 100644 --- a/.gitignore +++ b/.gitignore @@ -1,3 +1,4 @@ +dist/ yarn.lock npm-debug.log node_modules/ diff --git a/src/middleware/headers.js b/src/middleware/headers.js index cad6f5f168..1de3fc5f74 100644 --- a/src/middleware/headers.js +++ b/src/middleware/headers.js @@ -56,7 +56,7 @@ module.exports = function (middleware) { } // Validate session - if (req.uid && !req.session.meta && !res.get('Set-Cookie')) { + if (req.uid > 0 && !req.session.meta && !res.get('Set-Cookie')) { res.clearCookie(nconf.get('sessionKey'), meta.configs.cookie.get()); }