From 42be5936901defc8f1850c650c033dcff8ee510c Mon Sep 17 00:00:00 2001 From: Tor Andersson Date: Tue, 2 Jan 2024 13:04:35 +0100 Subject: Check forbidden mail list when changing mail address. --- server.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/server.js b/server.js index edb9d5f..8130397 100644 --- a/server.js +++ b/server.js @@ -657,7 +657,7 @@ app.get("/change-mail", must_be_logged_in, function (req, res) { app.post("/change-mail", must_be_logged_in, function (req, res) { let newmail = req.body.newmail - if (!is_valid_email(newmail)) + if (!is_valid_email(newmail) || is_forbidden_mail(newmail)) return res.render("change_mail.pug", { user: req.user, flash: "Invalid mail address!" }) if (SQL_EXISTS_USER_MAIL.get(newmail)) return res.render("change_mail.pug", { user: req.user, flash: "That mail address is already taken!" }) -- cgit v1.2.3