summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorgumi <git@gumi.ca>2018-04-10 15:12:52 -0400
committergumi <git@gumi.ca>2018-04-10 15:12:52 -0400
commitf6f78df611b1e94e079e4c023ea610a3b4bebac8 (patch)
tree315cf5a831e53792a4203811f6ceebd1ef49241b
parent429b055c829f11d9d019910823eb7fe8d5f1e74f (diff)
downloadapi-f6f78df611b1e94e079e4c023ea610a3b4bebac8.tar.gz
api-f6f78df611b1e94e079e4c023ea610a3b4bebac8.tar.bz2
api-f6f78df611b1e94e079e4c023ea610a3b4bebac8.tar.xz
api-f6f78df611b1e94e079e4c023ea610a3b4bebac8.zip
cap the captcha token length
-rw-r--r--server.js2
1 files changed, 1 insertions, 1 deletions
diff --git a/server.js b/server.js
index 3e449c8..071b429 100644
--- a/server.js
+++ b/server.js
@@ -59,7 +59,7 @@ const checkRateLimiting = (req, res, next) => {
const checkCaptcha = (req, res, next) => {
const token = String(req.get("X-CAPTCHA-TOKEN"));
- if (!token.match(/^[a-zA-Z0-9-_]{8,}$/)) {
+ if (!token.match(/^[a-zA-Z0-9-_]{30,60}$/)) {
res.status(403).json({
status: "error",
error: "no token sent"