From 948137b4b4bbe0500af14d063cd5ab1648d27952 Mon Sep 17 00:00:00 2001 From: ntimo Date: Thu, 3 Oct 2019 12:56:01 +0200 Subject: [PATCH] [API] Fixed only allow GET logic --- data/web/json_api.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/data/web/json_api.php b/data/web/json_api.php index 90dce751..852c2dec 100644 --- a/data/web/json_api.php +++ b/data/web/json_api.php @@ -205,7 +205,7 @@ if (isset($_SESSION['mailcow_cc_role']) || isset($_SESSION['pending_mailcow_cc_u function process_get_return($data) { echo (!isset($data) || empty($data)) ? '{}' : json_encode($data, JSON_UNESCAPED_UNICODE | JSON_PRETTY_PRINT); } - if ($_SERVER['REQUEST_METHOD'] === 'GET') { + if ($_SERVER['REQUEST_METHOD'] != 'GET') { http_response_code(400); echo json_encode(array( 'type' => 'error',