Merge pull request #5566 from stevie-mayhew/bugfix/uid

BUGFIX: check token and UID before member autologin
This commit is contained in:
Daniel Hensby 2016-05-19 23:46:09 +01:00
commit 3a9bb642d2

View File

@ -582,6 +582,10 @@ class Member extends DataObject implements TemplateGlobalProvider {
list($uid, $token) = explode(':', Cookie::get('alc_enc'), 2); list($uid, $token) = explode(':', Cookie::get('alc_enc'), 2);
if (!$uid || !$token) {
return;
}
$member = DataObject::get_by_id("Member", $uid); $member = DataObject::get_by_id("Member", $uid);
// check if autologin token matches // check if autologin token matches