From d0897f625d2f50141851bc771dd721af374042fb Mon Sep 17 00:00:00 2001 From: Erwin Goslawski Date: Tue, 6 Feb 2018 08:23:41 +0100 Subject: [PATCH] Destroy session when loading user login page Fixes #130 --- public/users/login.php | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/public/users/login.php b/public/users/login.php index 54c08142..b5a4807a 100644 --- a/public/users/login.php +++ b/public/users/login.php @@ -58,6 +58,11 @@ if ($_SERVER['REQUEST_METHOD'] == "POST") { } } + +session_unset(); +session_destroy(); +session_start(); + $_SESSION['PFA_token'] = md5(uniqid(rand(), true)); $smarty->assign('language_selector', language_selector(), false);