Fix potential private status leak (#10969)
parent
d34a3a2cc7
commit
7fa23ec697
|
@ -27,7 +27,7 @@ class StatusesController < ApplicationController
|
||||||
def show
|
def show
|
||||||
respond_to do |format|
|
respond_to do |format|
|
||||||
format.html do
|
format.html do
|
||||||
unless user_signed_in?
|
if current_account.nil?
|
||||||
skip_session!
|
skip_session!
|
||||||
expires_in 10.seconds, public: true
|
expires_in 10.seconds, public: true
|
||||||
end
|
end
|
||||||
|
|
Reference in New Issue