about summary refs log tree commit diff
diff options
context:
space:
mode:
authorEugen Rochko <eugen@zeonfederated.com>2020-03-31 18:20:48 +0200
committerGitHub <noreply@github.com>2020-03-31 18:20:48 +0200
commit9241cbf8616cc58e0b909326a767fc59be9a9d58 (patch)
tree2334344f96eb2fc72385248df627a220888fbc11
parentdd23fc6b1275b36dcd4fe5257ed6fdfa03f993b5 (diff)
Fix re-sending of e-mail confirmation not being rate limited (#13360)
Fix #13330
-rw-r--r--config/initializers/rack_attack.rb1
1 files changed, 1 insertions, 0 deletions
diff --git a/config/initializers/rack_attack.rb b/config/initializers/rack_attack.rb
index 8bc1104d4..09458c540 100644
--- a/config/initializers/rack_attack.rb
+++ b/config/initializers/rack_attack.rb
@@ -42,6 +42,7 @@ class Rack::Attack
     /auth/sign_in
     /auth
     /auth/password
+    /auth/confirmation
   ).freeze
 
   PROTECTED_PATHS_REGEX = Regexp.union(PROTECTED_PATHS.map { |path| /\A#{Regexp.escape(path)}/ })