kaori 4 лет назад
Родитель
Сommit
c92ee05f52
1 измененных файлов с 4 добавлено и 0 удалено
  1. 4 0
      src/server/middlewares/password-reset.js

+ 4 - 0
src/server/middlewares/password-reset.js

@@ -4,6 +4,10 @@ module.exports = (crowi, app) => {
   return async(req, res, next) => {
   return async(req, res, next) => {
     const { token, email } = req.query;
     const { token, email } = req.query;
 
 
+    if (token == null || email == null) {
+      return res.redirect('/login');
+    }
+
     const passwordResetOrder = await PasswordResetOrder.findOne({ token, email });
     const passwordResetOrder = await PasswordResetOrder.findOne({ token, email });
     // check the oneTimeToken is valid
     // check the oneTimeToken is valid
     if (passwordResetOrder == null || passwordResetOrder.isExpired()) {
     if (passwordResetOrder == null || passwordResetOrder.isExpired()) {