aboutsummaryrefslogtreecommitdiff
path: root/app/Controllers
diff options
context:
space:
mode:
Diffstat (limited to 'app/Controllers')
-rw-r--r--app/Controllers/indexController.php10
1 files changed, 5 insertions, 5 deletions
diff --git a/app/Controllers/indexController.php b/app/Controllers/indexController.php
index 7ce5f5436..17975fa86 100644
--- a/app/Controllers/indexController.php
+++ b/app/Controllers/indexController.php
@@ -232,14 +232,14 @@ class FreshRSS_index_Controller extends FreshRSS_ActionController {
/**
* This action displays the RSS feed of FreshRSS.
+ * @deprecated See user query RSS sharing instead
*/
- #[Deprecated('See user query RSS sharing instead')]
public function rssAction(): void {
$allow_anonymous = FreshRSS_Context::systemConf()->allow_anonymous;
// Check if user has access.
- if (!FreshRSS_Auth::hasAccess() && !$allow_anonymous) {
- Minz_Error::error(403);
+ if (!FreshRSS_Auth::hasAccess() && !$allow_anonymous && !Minz_Request::tokenIsOk()) {
+ Minz_Error::error(403, redirect: false);
}
try {
@@ -271,8 +271,8 @@ class FreshRSS_index_Controller extends FreshRSS_ActionController {
$allow_anonymous = FreshRSS_Context::systemConf()->allow_anonymous;
// Check if user has access.
- if (!FreshRSS_Auth::hasAccess() && !$allow_anonymous) {
- Minz_Error::error(403);
+ if (!FreshRSS_Auth::hasAccess() && !$allow_anonymous && !Minz_Request::tokenIsOk()) {
+ Minz_Error::error(403, redirect: false);
}
try {