mirror of
https://github.com/HabitRPG/habitica.git
synced 2025-12-17 22:57:21 +01:00
fix(auth): Don't try to check existing username on new reg
This commit is contained in:
@@ -473,7 +473,7 @@ describe('POST /user/auth/local/register', () => {
|
|||||||
});
|
});
|
||||||
|
|
||||||
it('rejects if username is already taken', async () => {
|
it('rejects if username is already taken', async () => {
|
||||||
let uniqueEmail = `${generateRandomUserName()}@exampe.com`;
|
let uniqueEmail = `${generateRandomUserName()}@example.com`;
|
||||||
let password = 'password';
|
let password = 'password';
|
||||||
|
|
||||||
await expect(api.post('/user/auth/local/register', {
|
await expect(api.post('/user/auth/local/register', {
|
||||||
|
|||||||
@@ -117,7 +117,11 @@ async function registerLocal (req, res, { isV3 = false }) {
|
|||||||
if (user) {
|
if (user) {
|
||||||
if (email === user.auth.local.email) throw new NotAuthorized(res.t('emailTaken'));
|
if (email === user.auth.local.email) throw new NotAuthorized(res.t('emailTaken'));
|
||||||
// Check that the lowercase username isn't already used
|
// Check that the lowercase username isn't already used
|
||||||
if (lowerCaseUsername === user.auth.local.lowerCaseUsername && existingUser._id !== user._id) throw new NotAuthorized(res.t('usernameTaken'));
|
if (existingUser) {
|
||||||
|
if (lowerCaseUsername === user.auth.local.lowerCaseUsername && existingUser._id !== user._id) throw new NotAuthorized(res.t('usernameTaken'));
|
||||||
|
} else if (lowerCaseUsername === user.auth.local.lowerCaseUsername) {
|
||||||
|
throw new NotAuthorized(res.t('usernameTaken'));
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
let hashed_password = await passwordUtils.bcryptHash(password); // eslint-disable-line camelcase
|
let hashed_password = await passwordUtils.bcryptHash(password); // eslint-disable-line camelcase
|
||||||
|
|||||||
Reference in New Issue
Block a user