mirror of
https://github.com/strapi/strapi.git
synced 2025-12-27 15:13:21 +00:00
Remove sensitive fields from sanitize user in the admin
This commit is contained in:
parent
b11623d365
commit
620418c9a6
@ -17,7 +17,7 @@ const sanitizeUserRoles = role => _.pick(role, ['id', 'name', 'description', 'co
|
||||
*/
|
||||
const sanitizeUser = user => {
|
||||
return {
|
||||
..._.omit(user, ['password', 'resetPasswordToken', 'roles']),
|
||||
..._.omit(user, ['password', 'resetPasswordToken', 'registrationToken', 'roles']),
|
||||
roles: user.roles && user.roles.map(sanitizeUserRoles),
|
||||
};
|
||||
};
|
||||
|
||||
Loading…
x
Reference in New Issue
Block a user