Fixed a logout bug when the access token changes

This commit is contained in:
2021-08-13 20:58:52 +10:00
parent c1155909be
commit d8e9620ad1
+3 -3
View File
@@ -19,12 +19,12 @@ router.post('/recover', require('./password-recover'));
router.get('/reset', require('./password-redirect'));
router.patch('/reset', require('./password-reset'));
//logouts allowed when banned, and when the token itself is invalid
router.delete('/logout', require('./logout'));
//middleware
router.use(tokenAuth);
//logouts allowed when banned, still needs tokens
router.delete('/logout', require('./logout'));
router.use(async (req, res, next) => {
const record = await accounts.findOne({
where: {