From: ThibG Date: Wed, 5 Jun 2019 11:40:20 +0000 (+0200) Subject: Fix potential private status leak (#10969) X-Git-Url: https://git.xn--scling-oua.cat.family/?a=commitdiff_plain;h=7fa23ec697e9e2c5f0434b9682de7017133df8dc;p=mastodon.git Fix potential private status leak (#10969) --- diff --git a/app/controllers/statuses_controller.rb b/app/controllers/statuses_controller.rb index e60646ba3..b8f4e675e 100644 --- a/app/controllers/statuses_controller.rb +++ b/app/controllers/statuses_controller.rb @@ -27,7 +27,7 @@ class StatusesController < ApplicationController def show respond_to do |format| format.html do - unless user_signed_in? + if current_account.nil? skip_session! expires_in 10.seconds, public: true end