diff options
| author | syuilo <Syuilotan@yahoo.co.jp> | 2023-08-20 10:00:10 +0900 |
|---|---|---|
| committer | syuilo <Syuilotan@yahoo.co.jp> | 2023-08-20 10:00:10 +0900 |
| commit | c9aeccb2ab260ceedc126e6e366da8cd13ece4b2 (patch) | |
| tree | c03cacc3583d15196ba0f7b1b785b6a6594c7108 /packages/backend | |
| parent | build(deps): bump actions/setup-node from 3.8.0 to 3.8.1 (#11739) (diff) | |
| download | sharkey-c9aeccb2ab260ceedc126e6e366da8cd13ece4b2.tar.gz sharkey-c9aeccb2ab260ceedc126e6e366da8cd13ece4b2.tar.bz2 sharkey-c9aeccb2ab260ceedc126e6e366da8cd13ece4b2.zip | |
fix(backend): ジョブキュー管理画面の認証を回避できる問題を修正
Diffstat (limited to 'packages/backend')
| -rw-r--r-- | packages/backend/src/server/web/ClientServerService.ts | 4 |
1 files changed, 3 insertions, 1 deletions
diff --git a/packages/backend/src/server/web/ClientServerService.ts b/packages/backend/src/server/web/ClientServerService.ts index b2b443cf36..25f59914ff 100644 --- a/packages/backend/src/server/web/ClientServerService.ts +++ b/packages/backend/src/server/web/ClientServerService.ts @@ -143,7 +143,9 @@ export class ClientServerService { // Authenticate fastify.addHook('onRequest', async (request, reply) => { - if (request.url === bullBoardPath || request.url.startsWith(bullBoardPath + '/')) { + // %71ueueとかでリクエストされたら困るため + const url = decodeURI(request.url); + if (url === bullBoardPath || url.startsWith(bullBoardPath + '/')) { const token = request.cookies.token; if (token == null) { reply.code(401); |