From 298788fafa340b63e101d3d10879647b1cdefb06 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Adri=C3=A0=20Casaj=C3=BAs?= Date: Tue, 4 Feb 2025 10:03:19 +0100 Subject: [PATCH] Require user to be logged in for email change verification --- app/dashboard/views/mailbox_detail.py | 2 ++ 1 file changed, 2 insertions(+) diff --git a/app/dashboard/views/mailbox_detail.py b/app/dashboard/views/mailbox_detail.py index 397618e3..070ad4bd 100644 --- a/app/dashboard/views/mailbox_detail.py +++ b/app/dashboard/views/mailbox_detail.py @@ -267,6 +267,8 @@ def cancel_mailbox_change_route(mailbox_id): @dashboard_bp.route("/mailbox/confirm_change") +@login_required +@limiter.limit("3/minute") def mailbox_confirm_email_change_route(): mailbox_id = request.args.get("mailbox_id")