From 85e91a8cad446bbc0a916f6b045bd8720404d17f Mon Sep 17 00:00:00 2001 From: gumi Date: Tue, 10 Apr 2018 15:17:01 -0400 Subject: don't accept "undefined" as token --- server.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/server.js b/server.js index 071b429..de4d53f 100644 --- a/server.js +++ b/server.js @@ -57,7 +57,7 @@ const checkRateLimiting = (req, res, next) => { }; const checkCaptcha = (req, res, next) => { - const token = String(req.get("X-CAPTCHA-TOKEN")); + const token = String(req.get("X-CAPTCHA-TOKEN") || ""); if (!token.match(/^[a-zA-Z0-9-_]{30,60}$/)) { res.status(403).json({ -- cgit v1.2.3-60-g2f50