summaryrefslogtreecommitdiffstats
path: root/image.php
diff options
context:
space:
mode:
Diffstat (limited to 'image.php')
-rw-r--r--image.php12
1 files changed, 6 insertions, 6 deletions
diff --git a/image.php b/image.php
index 415bcb76..8ea39ecd 100644
--- a/image.php
+++ b/image.php
@@ -27,14 +27,14 @@
// This file is a little weird it needs to allow API session
// this needs to be done a little better, but for now... eah
-if ($_REQUEST['auth']) {
- if (Access::session_exists(array(),$_REQUEST['auth'],'api')) {
- define('NO_SESSION','1');
- }
-} // extra layer of auth
-
+define('NO_SESSION','1');
require 'lib/init.php';
+// Check their session manually
+if (!session_exists(session_id()) && !Access::session_exists(array(),$_REQUEST['auth'],'api')) {
+ exit;
+}
+
/* Decide what size this image is */
switch ($_REQUEST['thumb']) {
case '1':