Skip to content

Commit

Permalink
app: delete session['logged_in'] when we delete session['codename']
Browse files Browse the repository at this point in the history
  • Loading branch information
redshiftzero committed Apr 27, 2019
1 parent 2c8fa3c commit 105e021
Showing 1 changed file with 7 additions and 0 deletions.
7 changes: 7 additions & 0 deletions securedrop/source_app/main.py
Original file line number Diff line number Diff line change
Expand Up @@ -67,6 +67,13 @@ def create():

# Issue 2386: don't log in on duplicates
del session['codename']

# Issue 4361: Delete 'logged_in' if it's in the session
try:
del session['logged_in']
except KeyError:
pass

abort(500)
else:
os.mkdir(current_app.storage.path(filesystem_id))
Expand Down

0 comments on commit 105e021

Please sign in to comment.