This commit is contained in:
aozhiwei 2024-07-01 14:16:48 +08:00
parent 6a2617d413
commit a3cabb2a79

View File

@ -90,11 +90,22 @@ class BaseAuthedController extends BaseController {
$this->accountId = getReqVal('account_id', ''); $this->accountId = getReqVal('account_id', '');
$this->sessionId = getReqVal('session_id', ''); $this->sessionId = getReqVal('session_id', '');
if (SERVER_ENV != _DEBUG) { if (SERVER_ENV != _DEBUG) {
if (!phpcommon\isValidSessionId($this->accountId, if (SERVER_ENV == _TEST) {
$this->sessionId)) { if ($this->sessionId == "CzRXrGHxwQZJNCeXkTRA") {
phpcommon\sendError(500, 'invalid session_id'); } else {
die(); if (!phpcommon\isValidSessionId($this->accountId,
} $this->sessionId)) {
phpcommon\sendError(500, 'invalid session_id');
die();
}
}
} else {
if (!phpcommon\isValidSessionId($this->accountId,
$this->sessionId)) {
phpcommon\sendError(500, 'invalid session_id');
die();
}
}
} }
if (!(myself()->_getChannel() == IMTBL_CHANNEL || if (!(myself()->_getChannel() == IMTBL_CHANNEL ||
myself()->_getChannel() == GUEST_CHANNEL)) { myself()->_getChannel() == GUEST_CHANNEL)) {