From 9d3c7f43ee94524d91b59d1a1850581ee52b9a33 Mon Sep 17 00:00:00 2001 From: "James E. Blair" Date: Sat, 3 Apr 2010 11:59:19 -0700 Subject: Handle bad arguments to post method. --- quoins/controllers.py | 2 ++ 1 file changed, 2 insertions(+) diff --git a/quoins/controllers.py b/quoins/controllers.py index 1db761f..b8715be 100644 --- a/quoins/controllers.py +++ b/quoins/controllers.py @@ -721,6 +721,8 @@ Comment: # don't get .ext in our name argument. name = request.environ['PATH_INFO'].split('/')[-1] post = DBSession.query(Post).get(post_id) + if not post: + abort(404) media = None for m in post.media: if m.name==name: -- cgit v1.2.3