Parcourir la source

fix: site enable check (#645)

crazywoola il y a 1 an
Parent
commit
f9412f5fdb
1 fichiers modifiés avec 2 ajouts et 0 suppressions
  1. 2 0
      api/controllers/web/wraps.py

+ 2 - 0
api/controllers/web/wraps.py

@@ -38,6 +38,8 @@ def decode_jwt_token():
     app_model = db.session.query(App).filter(App.id == decoded['app_id']).first()
     if not app_model:
         raise NotFound()
+    if app_model.enable_site is False:
+        raise Unauthorized('Site is disabled.')
     end_user = db.session.query(EndUser).filter(EndUser.id == decoded['end_user_id']).first()
     if not end_user:
         raise NotFound()