mirror of
https://github.com/snipe/snipe-it.git
synced 2026-03-23 00:45:28 +00:00
Fix for session fixation vulnerability
Signed-off-by: snipe <snipe@snipe.net>
This commit is contained in:
@ -303,8 +303,8 @@ class LoginController extends Controller
|
||||
*/
|
||||
public function logout(Request $request)
|
||||
{
|
||||
$request->session()->forget('2fa_authed');
|
||||
|
||||
$request->session()->regenerate(true);
|
||||
Auth::logout();
|
||||
|
||||
$settings = Setting::getSettings();
|
||||
|
||||
Reference in New Issue
Block a user