From: Julien Lancelot Date: Mon, 18 Jul 2016 16:19:19 +0000 (+0200) Subject: SONAR-7761 User should not be logged out in sessions/new page X-Git-Tag: 6.0-RC1~9 X-Git-Url: https://source.dussan.org/?a=commitdiff_plain;h=226c898c0e4284b1cba76b7830652281ce92fe72;p=sonarqube.git SONAR-7761 User should not be logged out in sessions/new page --- diff --git a/server/sonar-web/src/main/webapp/WEB-INF/app/controllers/sessions_controller.rb b/server/sonar-web/src/main/webapp/WEB-INF/app/controllers/sessions_controller.rb index 44adf224fc8..51e8fda5ae0 100644 --- a/server/sonar-web/src/main/webapp/WEB-INF/app/controllers/sessions_controller.rb +++ b/server/sonar-web/src/main/webapp/WEB-INF/app/controllers/sessions_controller.rb @@ -45,9 +45,6 @@ class SessionsController < ApplicationController # else the original uri can be set by ApplicationController#access_denied end @return_to = get_redirect_back_or_default(home_url) - - # Needed to bypass session fixation vulnerability (https://jira.sonarsource.com/browse/SONAR-6880) - reset_session end private