refactor user editing functionality to remove password handling

This commit is contained in:
2025-09-03 14:25:12 +02:00
parent 5a058de2f0
commit 13a654561e
4 changed files with 9 additions and 11 deletions

View File

@@ -224,10 +224,10 @@ router.get("/verifyToken", authenticate, async (req, res) => {
res.status(200).json({ message: "Token is valid" });
});
router.put("/editUser/:id", authenticate, async (req, res) => {
router.post("/editUser/:id", authenticate, async (req, res) => {
const userId = req.params.id;
const { username, role, password } = req.body || {};
const result = await handleEdit(userId, username, role, password);
const { username, role } = req.body || {};
const result = await handleEdit(userId, username, role);
if (result.success) {
return res.status(200).json({ message: "User edited successfully" });
}

View File

@@ -340,10 +340,10 @@ export const deleteUserID = async (userId) => {
return { success: false };
};
export const handleEdit = async (userId, username, role, password) => {
export const handleEdit = async (userId, username, role) => {
const [result] = await pool.query(
"UPDATE users SET username = ?, role = ?, password = ? WHERE id = ?",
[username, role, password, userId]
"UPDATE users SET username = ?, role = ? WHERE id = ?",
[username, role, userId]
);
if (result.affectedRows > 0) return { success: true };
return { success: false };