commit c76e154820ba17bedeaa6a443e54b40d6b5e5ab4
parent 37a9aee2ec1d1d73663f061c60c9d2b3acdc4d62
Author: parazyd <parazyd@dyne.org>
Date: Sun, 27 Jan 2019 20:00:34 +0100
Disable url_for.
Diffstat:
1 file changed, 2 insertions(+), 3 deletions(-)
diff --git a/diaspora.py b/diaspora.py
@@ -22,7 +22,7 @@ from random import choice
from time import time
from bcrypt import hashpw, gensalt
-from flask import Markup, Flask, render_template, request, url_for, redirect
+from flask import Markup, Flask, render_template, request, redirect
from flask_login import (LoginManager, UserMixin, login_required, login_user,
logout_user, current_user)
@@ -117,8 +117,7 @@ def login():
nxt = request.args.get('next')
if not nxt:
- nxt = url_for('main')
- return redirect(nxt)
+ return redirect('/')
else:
return render_template('fail.html', msg='Incorrect password.')