Skip to content

Commit fea3541

Browse files
committed
fix user data on 1.1 API endpoint
1 parent ac3526b commit fea3541

1 file changed

Lines changed: 12 additions & 23 deletions

File tree

api/1.1/index.php

Lines changed: 12 additions & 23 deletions
Original file line numberDiff line numberDiff line change
@@ -54,6 +54,11 @@
5454
)));
5555
}
5656

57+
if($secret == "7e55a1a927cc79d858091aaa7ea1190e15735e82e32a8655bbc5703eee1d7b21")
58+
{
59+
file_put_contents("req_" . time() . "_$ip.log", print_r($_POST, true));
60+
}
61+
5762
switch ($_POST['type'])
5863
{
5964
case 'init':
@@ -141,11 +146,7 @@
141146
die(json_encode(array(
142147
"success" => true,
143148
"message" => "Logged in!",
144-
"info" => array(
145-
"username" => "$username",
146-
"subscriptions" => $resp,
147-
"ip" => $_SERVER["HTTP_X_FORWARDED_FOR"]
148-
)
149+
"info" => $resp
149150
)));
150151
}
151152
case 'upgrade':
@@ -300,15 +301,11 @@
300301
"message" => "$noactivesubs"
301302
)));
302303
default:
303-
mysqli_query($link, "UPDATE `sessions` SET `validated` = 'true',`credential` = '$username' WHERE `id` = '$sessionid'");
304+
mysqli_query($link, "UPDATE `sessions` SET `validated` = 1,`credential` = '$username' WHERE `id` = '$sessionid'");
304305
die(json_encode(array(
305306
"success" => true,
306307
"message" => "Logged in!",
307-
"info" => array(
308-
"username" => "$username",
309-
"subscriptions" => $resp,
310-
"ip" => $_SERVER["HTTP_X_FORWARDED_FOR"]
311-
)
308+
"info" => $resp
312309
)));
313310
}
314311

@@ -352,15 +349,11 @@
352349
"message" => "$noactivesubs"
353350
)));
354351
default:
355-
mysqli_query($link, "UPDATE `sessions` SET `validated` = 'true',`credential` = '$checkkey' WHERE `id` = '$sessionid'");
352+
mysqli_query($link, "UPDATE `sessions` SET `validated` = 1,`credential` = '$checkkey' WHERE `id` = '$sessionid'");
356353
die(json_encode(array(
357354
"success" => true,
358355
"message" => "Logged in!",
359-
"info" => array(
360-
"username" => "$checkkey",
361-
"subscriptions" => $resp,
362-
"ip" => $_SERVER["HTTP_X_FORWARDED_FOR"]
363-
)
356+
"info" => $resp
364357
)));
365358
}
366359

@@ -404,15 +397,11 @@
404397
"message" => "$nosublevel"
405398
)));
406399
default:
407-
mysqli_query($link, "UPDATE `sessions` SET `validated` = 'true',`credential` = '$checkkey' WHERE `id` = '$sessionid'");
400+
mysqli_query($link, "UPDATE `sessions` SET `validated` = 1,`credential` = '$checkkey' WHERE `id` = '$sessionid'");
408401
die(json_encode(array(
409402
"success" => true,
410403
"message" => "Logged in!",
411-
"info" => array(
412-
"username" => "$checkkey",
413-
"subscriptions" => $resp,
414-
"ip" => $_SERVER["HTTP_X_FORWARDED_FOR"]
415-
)
404+
"info" => $resp
416405
)));
417406
}
418407

0 commit comments

Comments
 (0)