From 5057af7bbe6d72a3f5bebfb7a4c57abdb0172b0a Mon Sep 17 00:00:00 2001 From: Baris Usakli Date: Wed, 8 May 2013 16:00:37 -0400 Subject: [PATCH] user edit fix for !== --- public/templates/accountedit.tpl | 4 ++-- src/webserver.js | 4 ++-- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/public/templates/accountedit.tpl b/public/templates/accountedit.tpl index 33e4719432..63f393e5db 100644 --- a/public/templates/accountedit.tpl +++ b/public/templates/accountedit.tpl @@ -76,7 +76,7 @@ $(document).ready(function(){ $('#submitBtn').on('click',function(){ - + alert('click'); var userData = { uid:$('#inputUID').val(), email:$('#inputEmail').val(), @@ -89,7 +89,7 @@ $.post('/edituser', userData, function(data) { - + alert('fail'); } ); diff --git a/src/webserver.js b/src/webserver.js index e9280cdb5d..e1e5166012 100644 --- a/src/webserver.js +++ b/src/webserver.js @@ -333,11 +333,11 @@ passport.deserializeUser(function(uid, done) { }); app.post('/edituser', function(req, res){ - + if(!req.user) return res.redirect('/403'); - if(req.user.uid !== req.body.uid) + if(req.user.uid != req.body.uid) return res.redirect('/'); user.updateUserFields(req.user.uid, req.body);