Fix re-sending of e-mail confirmation not being rate limited (#13360)

Fix #13330
This commit is contained in:
Eugen Rochko 2020-03-31 18:20:48 +02:00 committed by GitHub
parent dd23fc6b12
commit 9241cbf861
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -42,6 +42,7 @@ class Rack::Attack
/auth/sign_in /auth/sign_in
/auth /auth
/auth/password /auth/password
/auth/confirmation
).freeze ).freeze
PROTECTED_PATHS_REGEX = Regexp.union(PROTECTED_PATHS.map { |path| /\A#{Regexp.escape(path)}/ }) PROTECTED_PATHS_REGEX = Regexp.union(PROTECTED_PATHS.map { |path| /\A#{Regexp.escape(path)}/ })