3
0
mirror of https://github.com/snipe/snipe-it.git synced 2026-03-23 00:45:28 +00:00

Fix for session fixation vulnerability

Signed-off-by: snipe <snipe@snipe.net>
This commit is contained in:
snipe
2020-05-12 10:31:54 -07:00
parent 7fb3a9b82c
commit 0550fe0ffa

View File

@ -303,8 +303,8 @@ class LoginController extends Controller
*/
public function logout(Request $request)
{
$request->session()->forget('2fa_authed');
$request->session()->regenerate(true);
Auth::logout();
$settings = Setting::getSettings();