File tree 4 files changed +4
-29
lines changed
4 files changed +4
-29
lines changed Original file line number Diff line number Diff line change @@ -76,7 +76,6 @@ def get_log():
76
76
return {"error" : "Insufficent Permissions" }, 403
77
77
78
78
level = request .get_json ().get ("level" , "info" )
79
-
80
79
offset = request .get_json ().get ("offset" , None )
81
80
82
81
if level == "info" :
Original file line number Diff line number Diff line change 23
23
@user_bluep .route ("/user/borrow/<int:media_id>" , methods = ["POST" ])
24
24
def borrow (media_id ):
25
25
if not is_loggedin (session ):
26
- return {"error" : "Not Logged in" }, 403
26
+ return {"error" : "Not Logged in" }, 401
27
27
28
28
user = get_user_data (session .get ("email" ))
29
29
@@ -157,8 +157,9 @@ def remove_user():
157
157
158
158
delete_user (user .get ("id" ))
159
159
160
+ current_app .logger .info (f"{ session ['email' ]} Deleted user with email { session ['email' ]} " )
161
+
160
162
session .pop ("email" )
161
163
session .pop ("pwdhash" )
162
164
163
- current_app .logger (f"{ session ['email' ]} Deleted user with email { session ['email' ]} " )
164
165
return {"status" : "success" }
Original file line number Diff line number Diff line change 5
5
redirect ,
6
6
url_for ,
7
7
render_template ,
8
- request ,
9
- abort ,
10
- Response ,
11
- current_app ,
12
8
)
13
9
14
10
15
- from library_db .utils .utils import (
16
- is_loggedin ,
17
- get_template_vars ,
18
- )
11
+ from library_db .utils .utils import is_loggedin , get_template_vars
19
12
from library_db .utils .db_utils import (
20
13
get_user_data ,
21
14
get_user_borrowings ,
@@ -63,21 +56,3 @@ def user_borrowings():
63
56
template_vars ["table_data" ] = table_data
64
57
65
58
return render_template ("user/borrowings.html" , ** template_vars )
66
-
67
-
68
- @user_bluep .route ("/delete" , methods = ["POST" ])
69
- def delete_user ():
70
- if not is_loggedin (session ):
71
- return redirect (url_for ("auth_bluep.login" , next = "/me/profile" ))
72
-
73
- if not request .form .get ("password" ):
74
- return abort (Response ("Bad Form Data" , 400 ))
75
-
76
- password = request .form ["password" ]
77
- pwdhash = get_user_data (session ["email" ]).get ("pwdhash" )
78
-
79
- if pwdhash != md5 (password .encode ()).hexdigest ():
80
- return abort (Response ("Wrong Password" , 401 ))
81
-
82
- current_app .logger (f"{ session ['email' ]} Deleted user with email { session ['email' ]} " )
83
- return redirect (url_for ("auth_bluep.login" , next = "/me/profile" ))
You can’t perform that action at this time.
0 commit comments