Skip to content
Snippets Groups Projects
Commit 3a2c6eff authored by yazSpaz's avatar yazSpaz
Browse files

added some minor security

parent 83cd22bd
No related branches found
No related tags found
No related merge requests found
...@@ -145,6 +145,20 @@ def addMCQ(): ...@@ -145,6 +145,20 @@ def addMCQ():
@routes_bp.route('/reviewResults', methods = ['GET', 'POST']) @routes_bp.route('/reviewResults', methods = ['GET', 'POST'])
def reviewResults(): def reviewResults():
if not session.get("user_id"):
flash("Please login first.", "warning")
return redirect(url_for('routes.login'))
role = session["role"]
if not role:
flash("Please login first.", "warning")
return redirect(url_for('routes.login'))
if role != "teacher":
flash("Access Denied.", "danger")
return redirect(url_for('routes.login'))
# SELECT MODULE - displays modules for that teacher # SELECT MODULE - displays modules for that teacher
modules = teachers.getModules(session.get("user_id"), db) modules = teachers.getModules(session.get("user_id"), db)
......
No preview for this file type
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment