Changeset 886aafe in github


Ignore:
Timestamp:
Aug 24, 2011 4:39:23 AM (21 months ago)
Author:
thomascube <thomas@…>
Branches:
master, HEAD, courier-fix, dev-browser-capabilities, pdo, release-0.7, release-0.8
Children:
9d5d7a8
Parents:
0c7fe2f
Message:

Don't rely on rcmail->task for session error check; use _REQUEST data instead

File:
1 edited

Legend:

Unmodified
Added
Removed
  • index.php

    r94c0743 r886aafe  
    156156if (empty($RCMAIL->user->ID)) { 
    157157  // log session failures 
    158   if ($RCMAIL->task != 'login' && $RCMAIL->task != 'logout' && !$session_error && ($sess_id = $_COOKIE[ini_get('session.name')])) { 
     158  if (!in_array(get_input_value('_task', RCUBE_INPUT_GPC), array('login','logout')) && !$session_error && ($sess_id = $_COOKIE[ini_get('session.name')])) { 
    159159    $RCMAIL->session->log("Aborted session " . $sess_id . "; no valid session data found"); 
    160160    $session_error = true; 
Note: See TracChangeset for help on using the changeset viewer.