浏览代码

Authorize FormRequests to authenticated user only

Bubka 3 年之前
父节点
当前提交
c8218c8cd7

+ 2 - 1
app/Api/v1/Requests/GroupAssignRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class GroupAssignRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class GroupAssignRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**

+ 2 - 1
app/Api/v1/Requests/GroupStoreRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class GroupStoreRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class GroupStoreRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**

+ 2 - 1
app/Api/v1/Requests/QrCodeDecodeRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class QrCodeDecodeRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class QrCodeDecodeRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**

+ 2 - 1
app/Api/v1/Requests/SettingStoreRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class SettingStoreRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class SettingStoreRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**

+ 2 - 1
app/Api/v1/Requests/SettingUpdateRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class SettingUpdateRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class SettingUpdateRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**

+ 2 - 1
app/Api/v1/Requests/TwoFAccountBatchRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class TwoFAccountBatchRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class TwoFAccountBatchRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**

+ 2 - 1
app/Api/v1/Requests/TwoFAccountDynamicRequest.php

@@ -4,6 +4,7 @@ namespace App\Api\v1\Requests;
 
 use Illuminate\Support\Arr;
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class TwoFAccountDynamicRequest extends FormRequest
 {
@@ -14,7 +15,7 @@ class TwoFAccountDynamicRequest extends FormRequest
     */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
     
     /**

+ 2 - 1
app/Api/v1/Requests/TwoFAccountReorderRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class TwoFAccountReorderRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class TwoFAccountReorderRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**

+ 2 - 1
app/Api/v1/Requests/TwoFAccountStoreRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class TwoFAccountStoreRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class TwoFAccountStoreRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**

+ 2 - 1
app/Api/v1/Requests/TwoFAccountUpdateRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class TwoFAccountUpdateRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class TwoFAccountUpdateRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**

+ 2 - 1
app/Api/v1/Requests/TwoFAccountUriRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class TwoFAccountUriRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class TwoFAccountUriRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**

+ 2 - 1
app/Api/v1/Requests/UserPatchPwdRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class UserPatchPwdRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class UserPatchPwdRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**

+ 2 - 1
app/Api/v1/Requests/UserUpdateRequest.php

@@ -3,6 +3,7 @@
 namespace App\Api\v1\Requests;
 
 use Illuminate\Foundation\Http\FormRequest;
+use Illuminate\Support\Facades\Auth;
 
 class UserUpdateRequest extends FormRequest
 {
@@ -13,7 +14,7 @@ class UserUpdateRequest extends FormRequest
      */
     public function authorize()
     {
-        return true;
+        return Auth::check();
     }
 
     /**