From f6f78df611b1e94e079e4c023ea610a3b4bebac8 Mon Sep 17 00:00:00 2001 From: gumi Date: Tue, 10 Apr 2018 15:12:52 -0400 Subject: cap the captcha token length --- server.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/server.js b/server.js index 3e449c8..071b429 100644 --- a/server.js +++ b/server.js @@ -59,7 +59,7 @@ const checkRateLimiting = (req, res, next) => { const checkCaptcha = (req, res, next) => { const token = String(req.get("X-CAPTCHA-TOKEN")); - if (!token.match(/^[a-zA-Z0-9-_]{8,}$/)) { + if (!token.match(/^[a-zA-Z0-9-_]{30,60}$/)) { res.status(403).json({ status: "error", error: "no token sent" -- cgit v1.2.3-70-g09d2