From a956716756ada1def209a3e09c1bdf0e4cd07427 Mon Sep 17 00:00:00 2001 From: TZGyn Date: Wed, 23 Aug 2023 00:27:18 +0800 Subject: [PATCH] Update getUser to not return user if session token expired --- lib/auth.ts | 2 ++ 1 file changed, 2 insertions(+) diff --git a/lib/auth.ts b/lib/auth.ts index 2f91301..dd037a0 100644 --- a/lib/auth.ts +++ b/lib/auth.ts @@ -13,5 +13,7 @@ export const getUser = async (token: RequestCookie | undefined) => { if (!existing_session) return null + if (existing_session.expires < new Date()) return null + return existing_session.user }