diff --git a/app/controllers/users_controller.rb b/app/controllers/users_controller.rb index 13d23d0dc..bc155dbbe 100644 --- a/app/controllers/users_controller.rb +++ b/app/controllers/users_controller.rb @@ -98,6 +98,10 @@ class UsersController < ApplicationController # 用户消息 def user_messages + unless User.current.logged? + render_403 + return + end # 当前用户查看消息,则设置消息为已读 querys = @user.course_messages if User.current.id == @user.id diff --git a/app/views/layouts/_new_header.html.erb b/app/views/layouts/_new_header.html.erb index f6f09e075..9252e23b9 100644 --- a/app/views/layouts/_new_header.html.erb +++ b/app/views/layouts/_new_header.html.erb @@ -54,48 +54,7 @@ - -