Fixing privelege escalation due to new model default

This commit is contained in:
Kevin Chung
2016-08-18 17:49:57 -04:00
parent 59a8becd45
commit dc7145e2dd

View File

@@ -185,9 +185,10 @@ def can_register():
def admins_only(f):
@wraps(f)
def decorated_function(*args, **kwargs):
if session.get('admin', None) is None:
if session.get('admin'):
return redirect(url_for('auth.login'))
return f(*args, **kwargs)
else:
return f(*args, **kwargs)
return decorated_function