forked from Qortal/qortal
Removed unnecessary check for isApiRestricted() when previewing.
The API key authentication will be enough to restrict requests.
This commit is contained in:
parent
83e0ed2b5d
commit
824d14e793
@ -70,12 +70,6 @@ public class RenderResource {
|
|||||||
@SecurityRequirement(name = "apiKey")
|
@SecurityRequirement(name = "apiKey")
|
||||||
public String preview(String directoryPath) {
|
public String preview(String directoryPath) {
|
||||||
Security.checkApiCallAllowed(request);
|
Security.checkApiCallAllowed(request);
|
||||||
|
|
||||||
// It's too dangerous to allow user-supplied filenames in weaker security contexts
|
|
||||||
if (Settings.getInstance().isApiRestricted()) {
|
|
||||||
throw ApiExceptionFactory.INSTANCE.createException(request, ApiError.NON_PRODUCTION);
|
|
||||||
}
|
|
||||||
|
|
||||||
String name = null;
|
String name = null;
|
||||||
Method method = Method.PUT;
|
Method method = Method.PUT;
|
||||||
Compression compression = Compression.ZIP;
|
Compression compression = Compression.ZIP;
|
||||||
|
Loading…
Reference in New Issue
Block a user