Skip to content

Commit 0fa6129

Browse files
authored
Remove referer filter on deletePassword endpoint (dresden-elektronik#7749)
1 parent 52d9093 commit 0fa6129

File tree

1 file changed

+1
-7
lines changed

1 file changed

+1
-7
lines changed

rest_configuration.cpp

+1-7
Original file line numberDiff line numberDiff line change
@@ -2727,16 +2727,10 @@ int DeRestPluginPrivate::changePassword(const ApiRequest &req, ApiResponse &rsp)
27272727
*/
27282728
int DeRestPluginPrivate::deletePassword(const ApiRequest &req, ApiResponse &rsp)
27292729
{
2730-
// reset only allowed for certain referers
27312730
bool ok = true;
2732-
QString referer = req.hdr.value(QLatin1String("Referer"));
2733-
if (referer.isEmpty() || !(referer.contains(QLatin1String("login.html")) || referer.contains(QLatin1String("login2.html"))))
2734-
{
2735-
ok = false;
2736-
}
27372731

27382732
// reset only allowed within first 10 minutes after startup
2739-
if (ok && getUptime() > 600)
2733+
if (getUptime() > 600)
27402734
{
27412735
ok = false;
27422736
}

0 commit comments

Comments
 (0)