ソースを参照

fix(security): remove unconfirmed_email from /whoami for apps

KernelDeimos 9 ヶ月 前
コミット
a002ad08e5
1 ファイル変更1 行追加0 行削除
  1. 1 0
      src/backend/src/routers/whoami.js

+ 1 - 0
src/backend/src/routers/whoami.js

@@ -73,6 +73,7 @@ const WHOAMI_GET = eggspress('/whoami', {
         // delete details.username;
         // delete details.uuid;
         delete details.email;
+        delete details.unconfirmed_email;
         delete details.desktop_bg_url;
         delete details.desktop_bg_color;
         delete details.desktop_bg_fit;